CVE-2019-20839
- EPSS 4.08%
- Veröffentlicht 17.06.2020 16:15:11
- Zuletzt bearbeitet 21.11.2024 04:39:30
libvncclient/sockets.c in LibVNCServer before 0.9.13 has a buffer overflow via a long socket filename.
CVE-2018-21247
- EPSS 1.48%
- Veröffentlicht 17.06.2020 16:15:11
- Zuletzt bearbeitet 21.11.2024 04:03:16
An issue was discovered in LibVNCServer before 0.9.13. There is an information leak (of uninitialized memory contents) in the libvncclient/rfbproto.c ConnectToRFBRepeater function.
CVE-2019-20788
- EPSS 0.8%
- Veröffentlicht 23.04.2020 19:15:12
- Zuletzt bearbeitet 21.11.2024 04:39:21
libvncclient/cursor.c in LibVNCServer through 0.9.12 has a HandleCursorShape integer overflow and heap-based buffer overflow via a large height or width value. NOTE: this may overlap CVE-2019-15690.
CVE-2019-15681
- EPSS 6.19%
- Veröffentlicht 29.10.2019 19:15:18
- Zuletzt bearbeitet 21.11.2024 04:29:15
LibVNC commit before d01e1bb4246323ba6fcee3b82ef1faa9b1dac82a contains a memory leak (CWE-655) in VNC server code, which allow an attacker to read stack memory and can be abused for information disclosure. Combined with another vulnerability, it can ...
CVE-2018-20750
- EPSS 10.91%
- Veröffentlicht 30.01.2019 18:29:00
- Zuletzt bearbeitet 21.11.2024 04:02:05
LibVNC through 0.9.12 contains a heap out-of-bounds write vulnerability in libvncserver/rfbserver.c. The fix for CVE-2018-15127 was incomplete.
CVE-2018-20749
- EPSS 10.91%
- Veröffentlicht 30.01.2019 18:29:00
- Zuletzt bearbeitet 21.11.2024 04:02:05
LibVNC before 0.9.12 contains a heap out-of-bounds write vulnerability in libvncserver/rfbserver.c. The fix for CVE-2018-15127 was incomplete.
CVE-2018-20748
- EPSS 10.91%
- Veröffentlicht 30.01.2019 18:29:00
- Zuletzt bearbeitet 21.11.2024 04:02:05
LibVNC before 0.9.12 contains multiple heap out-of-bounds write vulnerabilities in libvncclient/rfbproto.c. The fix for CVE-2018-20019 was incomplete.
CVE-2018-20019
- EPSS 17.32%
- Veröffentlicht 19.12.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 04:00:46
LibVNC before commit a83439b9fbe0f03c48eb94ed05729cb016f8b72f contains multiple heap out-of-bound write vulnerabilities in VNC client code that can result remote code execution
CVE-2017-5753
- EPSS 94.33%
- Veröffentlicht 04.01.2018 13:29:00
- Zuletzt bearbeitet 14.01.2025 19:29:55
Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.