Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2014-8241

Опубликовано: 10 окт. 2014
Источник: redhat
CVSS2: 6.8

Описание

XRegion in TigerVNC allows remote VNC servers to cause a denial of service (NULL pointer dereference) by leveraging failure to check a malloc return value, a similar issue to CVE-2014-6052.

A NULL pointer dereference flaw was found in TigerVNC's XRegion. A malicious VNC server could use this flaw to cause a client to crash.

Отчет

This issue affects the version of tigervnc as shipped with Red Hat Enterprise Linux 5 and 6. This has been rated as having Moderate security impact and is not currently planned to be addressed in future updates of Red Hat Enterprise Linux 5 and 6.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5vncWill not fix
Red Hat Enterprise Linux 6tigervncWill not fix
Red Hat Enterprise Linux 7tigervncFixedRHSA-2015:223319.11.2015

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-476
https://bugzilla.redhat.com/show_bug.cgi?id=1151312tigervnc: NULL pointer dereference flaw in XRegion

6.8 Medium

CVSS2

Связанные уязвимости

CVSS3: 9.8
nvd
больше 8 лет назад

XRegion in TigerVNC allows remote VNC servers to cause a denial of service (NULL pointer dereference) by leveraging failure to check a malloc return value, a similar issue to CVE-2014-6052.

CVSS3: 9.8
debian
больше 8 лет назад

XRegion in TigerVNC allows remote VNC servers to cause a denial of ser ...

CVSS3: 9.8
github
больше 3 лет назад

XRegion in TigerVNC allows remote VNC servers to cause a denial of service (NULL pointer dereference) by leveraging failure to check a malloc return value, a similar issue to CVE-2014-6052.

oracle-oval
почти 10 лет назад

ELSA-2015-2233: tigervnc security, bug fix, and enhancement update (MODERATE)

6.8 Medium

CVSS2