Логотип exploitDog
bind:"BDU:2021-01411" OR bind:"CVE-2019-15695"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2021-01411" OR bind:"CVE-2019-15695"

Количество 14

Количество 14

fstec логотип

BDU:2021-01411

больше 6 лет назад

Уязвимость функции CMsgReader::readSetCursor программного обеспечения VNC TigerVNC, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 7.2
EPSS: Низкий
ubuntu логотип

CVE-2019-15695

больше 6 лет назад

TigerVNC version prior to 1.10.1 is vulnerable to stack buffer overflow, which could be triggered from CMsgReader::readSetCursor. This vulnerability occurs due to insufficient sanitization of PixelFormat. Since remote attacker can choose offset from start of the buffer to start writing his values, exploitation of this vulnerability could potentially result into remote code execution. This attack appear to be exploitable via network connectivity.

CVSS3: 7.2
EPSS: Низкий
redhat логотип

CVE-2019-15695

больше 6 лет назад

TigerVNC version prior to 1.10.1 is vulnerable to stack buffer overflow, which could be triggered from CMsgReader::readSetCursor. This vulnerability occurs due to insufficient sanitization of PixelFormat. Since remote attacker can choose offset from start of the buffer to start writing his values, exploitation of this vulnerability could potentially result into remote code execution. This attack appear to be exploitable via network connectivity.

CVSS3: 7.2
EPSS: Низкий
nvd логотип

CVE-2019-15695

больше 6 лет назад

TigerVNC version prior to 1.10.1 is vulnerable to stack buffer overflow, which could be triggered from CMsgReader::readSetCursor. This vulnerability occurs due to insufficient sanitization of PixelFormat. Since remote attacker can choose offset from start of the buffer to start writing his values, exploitation of this vulnerability could potentially result into remote code execution. This attack appear to be exploitable via network connectivity.

CVSS3: 7.2
EPSS: Низкий
debian логотип

CVE-2019-15695

больше 6 лет назад

TigerVNC version prior to 1.10.1 is vulnerable to stack buffer overflo ...

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-25ff-c5j2-v9ch

почти 4 года назад

TigerVNC version prior to 1.10.1 is vulnerable to stack buffer overflow, which could be triggered from CMsgReader::readSetCursor. This vulnerability occurs due to insufficient sanitization of PixelFormat. Since remote attacker can choose offset from start of the buffer to start writing his values, exploitation of this vulnerability could potentially result into remote code execution. This attack appear to be exploitable via network connectivity.

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:0087-1

около 6 лет назад

Security update for tigervnc

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:1749-1

почти 6 лет назад

Security update for tigervnc

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:0266-1

около 6 лет назад

Security update for tigervnc

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:0159-1

около 6 лет назад

Security update for tigervnc

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:0113-1

около 6 лет назад

Security update for tigervnc

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:0112-1

около 6 лет назад

Security update for tigervnc

EPSS: Низкий
oracle-oval логотип

ELSA-2020-3875

больше 5 лет назад

ELSA-2020-3875: tigervnc security and bug fix update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2020-1497

почти 6 лет назад

ELSA-2020-1497: tigervnc security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2021-01411

Уязвимость функции CMsgReader::readSetCursor программного обеспечения VNC TigerVNC, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 7.2
3%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2019-15695

TigerVNC version prior to 1.10.1 is vulnerable to stack buffer overflow, which could be triggered from CMsgReader::readSetCursor. This vulnerability occurs due to insufficient sanitization of PixelFormat. Since remote attacker can choose offset from start of the buffer to start writing his values, exploitation of this vulnerability could potentially result into remote code execution. This attack appear to be exploitable via network connectivity.

CVSS3: 7.2
3%
Низкий
больше 6 лет назад
redhat логотип
CVE-2019-15695

TigerVNC version prior to 1.10.1 is vulnerable to stack buffer overflow, which could be triggered from CMsgReader::readSetCursor. This vulnerability occurs due to insufficient sanitization of PixelFormat. Since remote attacker can choose offset from start of the buffer to start writing his values, exploitation of this vulnerability could potentially result into remote code execution. This attack appear to be exploitable via network connectivity.

CVSS3: 7.2
3%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-15695

TigerVNC version prior to 1.10.1 is vulnerable to stack buffer overflow, which could be triggered from CMsgReader::readSetCursor. This vulnerability occurs due to insufficient sanitization of PixelFormat. Since remote attacker can choose offset from start of the buffer to start writing his values, exploitation of this vulnerability could potentially result into remote code execution. This attack appear to be exploitable via network connectivity.

CVSS3: 7.2
3%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-15695

TigerVNC version prior to 1.10.1 is vulnerable to stack buffer overflo ...

CVSS3: 7.2
3%
Низкий
больше 6 лет назад
github логотип
GHSA-25ff-c5j2-v9ch

TigerVNC version prior to 1.10.1 is vulnerable to stack buffer overflow, which could be triggered from CMsgReader::readSetCursor. This vulnerability occurs due to insufficient sanitization of PixelFormat. Since remote attacker can choose offset from start of the buffer to start writing his values, exploitation of this vulnerability could potentially result into remote code execution. This attack appear to be exploitable via network connectivity.

3%
Низкий
почти 4 года назад
suse-cvrf логотип
openSUSE-SU-2020:0087-1

Security update for tigervnc

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:1749-1

Security update for tigervnc

почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:0266-1

Security update for tigervnc

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:0159-1

Security update for tigervnc

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:0113-1

Security update for tigervnc

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:0112-1

Security update for tigervnc

около 6 лет назад
oracle-oval логотип
ELSA-2020-3875

ELSA-2020-3875: tigervnc security and bug fix update (MODERATE)

больше 5 лет назад
oracle-oval логотип
ELSA-2020-1497

ELSA-2020-1497: tigervnc security update (MODERATE)

почти 6 лет назад

Уязвимостей на страницу