Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-5884

Опубликовано: 28 фев. 2017
Источник: nvd
CVSS3: 7.8
CVSS2: 6.8
EPSS Низкий

Описание

gtk-vnc before 0.7.0 does not properly check boundaries of subrectangle-containing tiles, which allows remote servers to execute arbitrary code via the src x, y coordinates in a crafted (1) rre, (2) hextile, or (3) copyrect tile.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:fedoraproject:fedora:25:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:a:gnome:gtk-vnc:*:*:*:*:*:*:*:*
Версия до 0.6.0 (включая)

EPSS

Процентиль: 63%
0.00457
Низкий

7.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-118

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 8 лет назад

gtk-vnc before 0.7.0 does not properly check boundaries of subrectangle-containing tiles, which allows remote servers to execute arbitrary code via the src x, y coordinates in a crafted (1) rre, (2) hextile, or (3) copyrect tile.

CVSS3: 3.1
redhat
почти 9 лет назад

gtk-vnc before 0.7.0 does not properly check boundaries of subrectangle-containing tiles, which allows remote servers to execute arbitrary code via the src x, y coordinates in a crafted (1) rre, (2) hextile, or (3) copyrect tile.

CVSS3: 7.8
debian
больше 8 лет назад

gtk-vnc before 0.7.0 does not properly check boundaries of subrectangl ...

CVSS3: 7.8
github
больше 3 лет назад

gtk-vnc before 0.7.0 does not properly check boundaries of subrectangle-containing tiles, which allows remote servers to execute arbitrary code via the src x, y coordinates in a crafted (1) rre, (2) hextile, or (3) copyrect tile.

suse-cvrf
около 4 лет назад

Security update for gtk-vnc

EPSS

Процентиль: 63%
0.00457
Низкий

7.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-118