cbcvebase.
CVE-2009-3616
published 2009-10-23

CVE-2009-3616: Multiple use-after-free vulnerabilities in vnc.c in the VNC server in QEMU 0.10.6 and earlier might allow guest OS users to execute arbitrary code on the host…

PriorityP354critical9.9CVSS 3.1
AVNACLPRLUINSCCHIHAH
EPSS
3.88%
89.1th percentile
Multiple use-after-free vulnerabilities in vnc.c in the VNC server in QEMU 0.10.6 and earlier might allow guest OS users to execute arbitrary code on the host OS by establishing a connection from a VNC client and then (1) disconnecting during data transfer, (2) sending a message using incorrect integer data types, or (3) using the Fuzzy Screen Mode protocol, related to double free vulnerabilities.

Affected

8 ranges
VendorProductVersion rangeFixed in
debianqemu< qemu 0.11.0-1 (bookworm)qemu 0.11.0-1 (bookworm)
qemuqemu<= 0.10.6
qemuqemu>= 0 < 0.11.0-10.11.0-1
qemuqemu>= 0 < 0.11.0-10.11.0-1
qemuqemu>= 0 < 0.11.0-10.11.0-1
qemuqemu>= 0 < 0.11.0-10.11.0-1
redhatenterprise_linux_server
redhatenterprise_linux_workstation

CVSS provenance

nvdv3.19.9CRITICALCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
nvdv2.08.5HIGHAV:N/AC:M/Au:S/C:C/I:C/A:C
osv9.9CRITICAL
vendor_debian9.9MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.