Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 8

Количество 8

fstec логотип

BDU:2026-12859

5 месяцев назад

Уязвимость библиотеки LibVNC, связанная с записью за границами буфера, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2026-44988

4 месяца назад

LibVNCClient is a library for easy implementation of a VNC client. In 0.9.15 and earlier, LibVNCClient's Tight encoding decoder uses fixed-size 2048-pixel scratch buffers for the Gradient filter, but it does not reject Tight rectangles whose width is larger than 2048 pixels. A malicious VNC server can send a crafted FramebufferUpdate rectangle using Tight encoding with NoZlib | ExplicitFilter and the Gradient filter. When a LibVNCClient-based client connects, the client processes the server-controlled rectangle width and writes beyond fixed-size Gradient buffers. This vulnerability is fixed with commit 5b270544b85233668b98161323297d418a8f5fd1.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2026-44988

4 месяца назад

LibVNCClient is a library for easy implementation of a VNC client. In 0.9.15 and earlier, LibVNCClient's Tight encoding decoder uses fixed-size 2048-pixel scratch buffers for the Gradient filter, but it does not reject Tight rectangles whose width is larger than 2048 pixels. A malicious VNC server can send a crafted FramebufferUpdate rectangle using Tight encoding with NoZlib | ExplicitFilter and the Gradient filter. When a LibVNCClient-based client connects, the client processes the server-controlled rectangle width and writes beyond fixed-size Gradient buffers. This vulnerability is fixed with commit 5b270544b85233668b98161323297d418a8f5fd1.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2026-44988

4 месяца назад

LibVNCClient is a library for easy implementation of a VNC client. In ...

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21118-1

3 месяца назад

Security update for LibVNCServer

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2428-1

3 месяца назад

Security update for LibVNCServer

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2427-1

3 месяца назад

Security update for LibVNCServer

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2227-1

4 месяца назад

Security update for LibVNCServer

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2026-12859

Уязвимость библиотеки LibVNC, связанная с записью за границами буфера, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 8.8
0%
Низкий
5 месяцев назад
ubuntu логотип
CVE-2026-44988

LibVNCClient is a library for easy implementation of a VNC client. In 0.9.15 and earlier, LibVNCClient's Tight encoding decoder uses fixed-size 2048-pixel scratch buffers for the Gradient filter, but it does not reject Tight rectangles whose width is larger than 2048 pixels. A malicious VNC server can send a crafted FramebufferUpdate rectangle using Tight encoding with NoZlib | ExplicitFilter and the Gradient filter. When a LibVNCClient-based client connects, the client processes the server-controlled rectangle width and writes beyond fixed-size Gradient buffers. This vulnerability is fixed with commit 5b270544b85233668b98161323297d418a8f5fd1.

CVSS3: 8.8
0%
Низкий
4 месяца назад
nvd логотип
CVE-2026-44988

LibVNCClient is a library for easy implementation of a VNC client. In 0.9.15 and earlier, LibVNCClient's Tight encoding decoder uses fixed-size 2048-pixel scratch buffers for the Gradient filter, but it does not reject Tight rectangles whose width is larger than 2048 pixels. A malicious VNC server can send a crafted FramebufferUpdate rectangle using Tight encoding with NoZlib | ExplicitFilter and the Gradient filter. When a LibVNCClient-based client connects, the client processes the server-controlled rectangle width and writes beyond fixed-size Gradient buffers. This vulnerability is fixed with commit 5b270544b85233668b98161323297d418a8f5fd1.

CVSS3: 8.8
0%
Низкий
4 месяца назад
debian логотип
CVE-2026-44988

LibVNCClient is a library for easy implementation of a VNC client. In ...

CVSS3: 8.8
0%
Низкий
4 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:21118-1

Security update for LibVNCServer

0%
Низкий
3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2428-1

Security update for LibVNCServer

0%
Низкий
3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2427-1

Security update for LibVNCServer

0%
Низкий
3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2227-1

Security update for LibVNCServer

0%
Низкий
4 месяца назад

Уязвимостей на страницу