Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2017-5581

Опубликовано: 13 янв. 2017
Источник: redhat
CVSS3: 3.1
EPSS Низкий

Описание

Buffer overflow in the ModifiablePixelBuffer::fillRect function in TigerVNC before 1.7.1 allows remote servers to execute arbitrary code via an RRE message with subrectangle outside framebuffer boundaries.

A buffer overflow flaw, leading to memory corruption, was found in TigerVNC viewer. A remote malicious VNC server could use this flaw to crash the client vncviewer process resulting in denial of service.

Дополнительная информация

Статус:

Low
Дефект:
CWE-119
https://bugzilla.redhat.com/show_bug.cgi?id=1415712tigervnc: Buffer overflow in ModifiablePixelBuffer::fillRect

EPSS

Процентиль: 86%
0.03195
Низкий

3.1 Low

CVSS3

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 8 лет назад

Buffer overflow in the ModifiablePixelBuffer::fillRect function in TigerVNC before 1.7.1 allows remote servers to execute arbitrary code via an RRE message with subrectangle outside framebuffer boundaries.

CVSS3: 9.8
nvd
больше 8 лет назад

Buffer overflow in the ModifiablePixelBuffer::fillRect function in TigerVNC before 1.7.1 allows remote servers to execute arbitrary code via an RRE message with subrectangle outside framebuffer boundaries.

CVSS3: 9.8
debian
больше 8 лет назад

Buffer overflow in the ModifiablePixelBuffer::fillRect function in Tig ...

CVSS3: 9.8
github
больше 3 лет назад

Buffer overflow in the ModifiablePixelBuffer::fillRect function in TigerVNC before 1.7.1 allows remote servers to execute arbitrary code via an RRE message with subrectangle outside framebuffer boundaries.

oracle-oval
больше 8 лет назад

ELSA-2017-0630: tigervnc security and bug fix update (MODERATE)

EPSS

Процентиль: 86%
0.03195
Низкий

3.1 Low

CVSS3