TightVNC code version 1.3.10 contains heap buffer overflow in rfbServerCutText handler, which can potentially result code execution.. This attack appear to be exploitable via network connectivity.
A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().
Name | Vendor | Start Version | End Version |
---|---|---|---|
Tightvnc | Tightvnc | 1.3.10 (including) | 1.3.10 (including) |
Bochs | Ubuntu | bionic | * |
Bochs | Ubuntu | disco | * |
Bochs | Ubuntu | eoan | * |
Bochs | Ubuntu | groovy | * |
Bochs | Ubuntu | hirsute | * |
Bochs | Ubuntu | impish | * |
Bochs | Ubuntu | kinetic | * |
Bochs | Ubuntu | lunar | * |
Bochs | Ubuntu | mantic | * |
Bochs | Ubuntu | trusty | * |
Bochs | Ubuntu | xenial | * |
Directvnc | Ubuntu | bionic | * |
Directvnc | Ubuntu | disco | * |
Directvnc | Ubuntu | eoan | * |
Directvnc | Ubuntu | groovy | * |
Directvnc | Ubuntu | hirsute | * |
Directvnc | Ubuntu | impish | * |
Directvnc | Ubuntu | kinetic | * |
Directvnc | Ubuntu | lunar | * |
Directvnc | Ubuntu | mantic | * |
Directvnc | Ubuntu | trusty | * |
Directvnc | Ubuntu | xenial | * |
Libvncserver | Ubuntu | trusty | * |
Ssvnc | Ubuntu | bionic | * |
Ssvnc | Ubuntu | disco | * |
Ssvnc | Ubuntu | eoan | * |
Ssvnc | Ubuntu | groovy | * |
Ssvnc | Ubuntu | hirsute | * |
Ssvnc | Ubuntu | impish | * |
Ssvnc | Ubuntu | kinetic | * |
Ssvnc | Ubuntu | lunar | * |
Ssvnc | Ubuntu | mantic | * |
Ssvnc | Ubuntu | trusty | * |
Ssvnc | Ubuntu | xenial | * |
Tightvnc | Ubuntu | bionic | * |
Tightvnc | Ubuntu | disco | * |
Tightvnc | Ubuntu | eoan | * |
Tightvnc | Ubuntu | groovy | * |
Tightvnc | Ubuntu | hirsute | * |
Tightvnc | Ubuntu | impish | * |
Tightvnc | Ubuntu | kinetic | * |
Tightvnc | Ubuntu | lunar | * |
Tightvnc | Ubuntu | mantic | * |
Tightvnc | Ubuntu | trusty | * |
Tightvnc | Ubuntu | trusty/esm | * |
Tightvnc | Ubuntu | xenial | * |
Veyon | Ubuntu | disco | * |
Veyon | Ubuntu | eoan | * |
Veyon | Ubuntu | groovy | * |
Veyon | Ubuntu | hirsute | * |
Veyon | Ubuntu | impish | * |
Veyon | Ubuntu | kinetic | * |
Veyon | Ubuntu | lunar | * |
Veyon | Ubuntu | mantic | * |
Veyon | Ubuntu | trusty | * |
Vino | Ubuntu | trusty | * |
Vlc | Ubuntu | bionic | * |
Vlc | Ubuntu | disco | * |
Vlc | Ubuntu | eoan | * |
Vlc | Ubuntu | groovy | * |
Vlc | Ubuntu | hirsute | * |
Vlc | Ubuntu | impish | * |
Vlc | Ubuntu | kinetic | * |
Vlc | Ubuntu | lunar | * |
Vlc | Ubuntu | mantic | * |
Vlc | Ubuntu | trusty | * |
Vlc | Ubuntu | xenial | * |
Vncsnapshot | Ubuntu | bionic | * |
Vncsnapshot | Ubuntu | disco | * |
Vncsnapshot | Ubuntu | eoan | * |
Vncsnapshot | Ubuntu | groovy | * |
Vncsnapshot | Ubuntu | hirsute | * |
Vncsnapshot | Ubuntu | impish | * |
Vncsnapshot | Ubuntu | kinetic | * |
Vncsnapshot | Ubuntu | lunar | * |
Vncsnapshot | Ubuntu | mantic | * |
Vncsnapshot | Ubuntu | trusty | * |
Vncsnapshot | Ubuntu | xenial | * |
X11vnc | Ubuntu | bionic | * |
X11vnc | Ubuntu | disco | * |
X11vnc | Ubuntu | eoan | * |
X11vnc | Ubuntu | groovy | * |
X11vnc | Ubuntu | hirsute | * |
X11vnc | Ubuntu | impish | * |
X11vnc | Ubuntu | kinetic | * |
X11vnc | Ubuntu | lunar | * |
X11vnc | Ubuntu | mantic | * |
X11vnc | Ubuntu | trusty | * |
X11vnc | Ubuntu | trusty/esm | * |
X11vnc | Ubuntu | xenial | * |
X2vnc | Ubuntu | bionic | * |
X2vnc | Ubuntu | disco | * |
X2vnc | Ubuntu | eoan | * |
X2vnc | Ubuntu | groovy | * |
X2vnc | Ubuntu | hirsute | * |
X2vnc | Ubuntu | impish | * |
X2vnc | Ubuntu | kinetic | * |
X2vnc | Ubuntu | lunar | * |
X2vnc | Ubuntu | mantic | * |
X2vnc | Ubuntu | trusty | * |
X2vnc | Ubuntu | xenial | * |