Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-0388

Опубликовано: 04 фев. 2009
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 10

Описание

Multiple integer signedness errors in (1) UltraVNC 1.0.2 and 1.0.5 and (2) TightVnc 1.3.9 allow remote VNC servers to cause a denial of service (heap corruption and application crash) or possibly execute arbitrary code via a large length value in a message, related to the (a) ClientConnection::CheckBufferSize and (b) ClientConnection::CheckFileZipBufferSize functions in ClientConnection.cpp.

РелизСтатусПримечание
dapper

ignored

end of life
devel

not-affected

Windows only
gutsy

ignored

end of life
hardy

not-affected

Windows only
intrepid

not-affected

Windows only
jaunty

not-affected

Windows only
karmic

not-affected

Windows only
upstream

needs-triage

Показывать по

EPSS

Процентиль: 98%
0.48672
Средний

10 Critical

CVSS2

Связанные уязвимости

nvd
почти 17 лет назад

Multiple integer signedness errors in (1) UltraVNC 1.0.2 and 1.0.5 and (2) TightVnc 1.3.9 allow remote VNC servers to cause a denial of service (heap corruption and application crash) or possibly execute arbitrary code via a large length value in a message, related to the (a) ClientConnection::CheckBufferSize and (b) ClientConnection::CheckFileZipBufferSize functions in ClientConnection.cpp.

debian
почти 17 лет назад

Multiple integer signedness errors in (1) UltraVNC 1.0.2 and 1.0.5 and ...

github
больше 3 лет назад

Multiple integer signedness errors in (1) UltraVNC 1.0.2 and 1.0.5 and (2) TightVnc 1.3.9 allow remote VNC servers to cause a denial of service (heap corruption and application crash) or possibly execute arbitrary code via a large length value in a message, related to the (a) ClientConnection::CheckBufferSize and (b) ClientConnection::CheckFileZipBufferSize functions in ClientConnection.cpp.

EPSS

Процентиль: 98%
0.48672
Средний

10 Critical

CVSS2