Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7397-jpw5-q274

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

libvncclient/cursor.c in LibVNCServer through 0.9.12 has a HandleCursorShape integer overflow and heap-based buffer overflow via a large height or width value. NOTE: this may overlap CVE-2019-15690.

libvncclient/cursor.c in LibVNCServer through 0.9.12 has a HandleCursorShape integer overflow and heap-based buffer overflow via a large height or width value. NOTE: this may overlap CVE-2019-15690.

EPSS

Процентиль: 74%
0.00796
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-190
CWE-787

Связанные уязвимости

CVSS3: 9.8
ubuntu
почти 6 лет назад

libvncclient/cursor.c in LibVNCServer through 0.9.12 has a HandleCursorShape integer overflow and heap-based buffer overflow via a large height or width value. NOTE: this may overlap CVE-2019-15690.

redhat
около 6 лет назад

libvncclient/cursor.c in LibVNCServer through 0.9.12 has a HandleCursorShape integer overflow and heap-based buffer overflow via a large height or width value. NOTE: this may overlap CVE-2019-15690.

CVSS3: 9.8
nvd
почти 6 лет назад

libvncclient/cursor.c in LibVNCServer through 0.9.12 has a HandleCursorShape integer overflow and heap-based buffer overflow via a large height or width value. NOTE: this may overlap CVE-2019-15690.

CVSS3: 9.8
debian
почти 6 лет назад

libvncclient/cursor.c in LibVNCServer through 0.9.12 has a HandleCurso ...

suse-cvrf
больше 5 лет назад

Security update for LibVNCServer

EPSS

Процентиль: 74%
0.00796
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-190
CWE-787