The setpixelformat function in ui/vnc.c in QEMU allows remote attackers to cause a denial of service (crash) via a small bytesperpixel value.
{ "urgency": "not yet assigned" }