Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-0011

Опубликовано: 02 янв. 2020
Источник: debian
EPSS Низкий

Описание

Multiple heap-based buffer overflows in the ZRLE_DECODE function in common/rfb/zrleDecode.h in TigerVNC before 1.3.1, when NDEBUG is enabled, allow remote VNC servers to cause a denial of service (vncviewer crash) and possibly execute arbitrary code via vectors related to screen image rendering.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
tigervncnot-affectedpackage
vnc4fixed4.1.1+X4.3.0+t-1package

Примечания

  • may affect related *VNC implementations if built with NDEBUG

  • e.g. vnc4 seems to have similar code in common/rfb/zrleDecode.h

  • starting with 4.1.1+X4.3.0+t-1 it's a transitional package

EPSS

Процентиль: 67%
0.00549
Низкий

Связанные уязвимости

redhat
почти 12 лет назад

Multiple heap-based buffer overflows in the ZRLE_DECODE function in common/rfb/zrleDecode.h in TigerVNC before 1.3.1, when NDEBUG is enabled, allow remote VNC servers to cause a denial of service (vncviewer crash) and possibly execute arbitrary code via vectors related to screen image rendering.

CVSS3: 9.8
nvd
около 6 лет назад

Multiple heap-based buffer overflows in the ZRLE_DECODE function in common/rfb/zrleDecode.h in TigerVNC before 1.3.1, when NDEBUG is enabled, allow remote VNC servers to cause a denial of service (vncviewer crash) and possibly execute arbitrary code via vectors related to screen image rendering.

github
больше 3 лет назад

Multiple heap-based buffer overflows in the ZRLE_DECODE function in common/rfb/zrleDecode.h in TigerVNC before 1.3.1, when NDEBUG is enabled, allow remote VNC servers to cause a denial of service (vncviewer crash) and possibly execute arbitrary code via vectors related to screen image rendering.

EPSS

Процентиль: 67%
0.00549
Низкий