CVE-2008-2382
The protocol_client_msg function in vnc.c in the VNC server in (1) Qemu 0.9.1 and earlier and (2) KVM kvm-79 and earlier allows remote attackers to cause a denial of service (infinite loop) via a certain message.
Date published : 2008-12-24
http://www.securityfocus.com/bid/32910
http://www.securityfocus.com/archive/1/499502/100/0/threaded