An issue was discovered in LibVNCServer before 0.9.13. Byte-aligned data is accessed through uint32_t pointers in libvncclient/rfbproto.c. NOTE: there is reportedly no trust boundary crossed.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Libvncserver | Libvncserver_project | * | 0.9.13 (excluding) |
Libvncserver | Ubuntu | bionic | * |
Libvncserver | Ubuntu | eoan | * |
Libvncserver | Ubuntu | focal | * |
Libvncserver | Ubuntu | trusty | * |
Libvncserver | Ubuntu | xenial | * |
Veyon | Ubuntu | eoan | * |
Veyon | Ubuntu | groovy | * |
Veyon | Ubuntu | hirsute | * |
Veyon | Ubuntu | impish | * |
Veyon | Ubuntu | kinetic | * |
Veyon | Ubuntu | lunar | * |
Veyon | Ubuntu | mantic | * |
X11vnc | Ubuntu | bionic | * |
X11vnc | Ubuntu | eoan | * |
X11vnc | Ubuntu | groovy | * |
X11vnc | Ubuntu | hirsute | * |
X11vnc | Ubuntu | impish | * |
X11vnc | Ubuntu | kinetic | * |
X11vnc | Ubuntu | lunar | * |
X11vnc | Ubuntu | mantic | * |
X11vnc | Ubuntu | trusty | * |
X11vnc | Ubuntu | xenial | * |