Количество 8
Количество 8
CVE-2026-32854
LibVNCServer versions 0.9.15 and prior (fixed in commit dc78dee) contain null pointer dereference vulnerabilities in the HTTP proxy handlers within httpProcessInput() in httpd.c that allow remote attackers to cause a denial of service by sending specially crafted HTTP requests. Attackers can exploit missing validation of strchr() return values in the CONNECT and GET proxy handling paths to trigger null pointer dereferences and crash the server when httpd and proxy features are enabled.
CVE-2026-32854
LibVNCServer versions 0.9.15 and prior (fixed in commit dc78dee) contain null pointer dereference vulnerabilities in the HTTP proxy handlers within httpProcessInput() in httpd.c that allow remote attackers to cause a denial of service by sending specially crafted HTTP requests. Attackers can exploit missing validation of strchr() return values in the CONNECT and GET proxy handling paths to trigger null pointer dereferences and crash the server when httpd and proxy features are enabled.
CVE-2026-32854
LibVNCServer versions 0.9.15 and prior (fixed in commit dc78dee) contain null pointer dereference vulnerabilities in the HTTP proxy handlers within httpProcessInput() in httpd.c that allow remote attackers to cause a denial of service by sending specially crafted HTTP requests. Attackers can exploit missing validation of strchr() return values in the CONNECT and GET proxy handling paths to trigger null pointer dereferences and crash the server when httpd and proxy features are enabled.
CVE-2026-32854
LibVNCServer versions 0.9.15 and prior (fixed incommit dc78dee) contai ...
openSUSE-SU-2026:20552-1
Security update for LibVNCServer
SUSE-SU-2026:1174-1
Security update for LibVNCServer
SUSE-SU-2026:1173-1
Security update for LibVNCServer
SUSE-SU-2026:1124-1
Security update for LibVNCServer
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-32854 LibVNCServer versions 0.9.15 and prior (fixed in commit dc78dee) contain null pointer dereference vulnerabilities in the HTTP proxy handlers within httpProcessInput() in httpd.c that allow remote attackers to cause a denial of service by sending specially crafted HTTP requests. Attackers can exploit missing validation of strchr() return values in the CONNECT and GET proxy handling paths to trigger null pointer dereferences and crash the server when httpd and proxy features are enabled. | CVSS3: 7.5 | 5% Низкий | 5 месяцев назад | |
CVE-2026-32854 LibVNCServer versions 0.9.15 and prior (fixed in commit dc78dee) contain null pointer dereference vulnerabilities in the HTTP proxy handlers within httpProcessInput() in httpd.c that allow remote attackers to cause a denial of service by sending specially crafted HTTP requests. Attackers can exploit missing validation of strchr() return values in the CONNECT and GET proxy handling paths to trigger null pointer dereferences and crash the server when httpd and proxy features are enabled. | CVSS3: 5.3 | 5% Низкий | 5 месяцев назад | |
CVE-2026-32854 LibVNCServer versions 0.9.15 and prior (fixed in commit dc78dee) contain null pointer dereference vulnerabilities in the HTTP proxy handlers within httpProcessInput() in httpd.c that allow remote attackers to cause a denial of service by sending specially crafted HTTP requests. Attackers can exploit missing validation of strchr() return values in the CONNECT and GET proxy handling paths to trigger null pointer dereferences and crash the server when httpd and proxy features are enabled. | CVSS3: 7.5 | 5% Низкий | 5 месяцев назад | |
CVE-2026-32854 LibVNCServer versions 0.9.15 and prior (fixed incommit dc78dee) contai ... | CVSS3: 7.5 | 5% Низкий | 5 месяцев назад | |
openSUSE-SU-2026:20552-1 Security update for LibVNCServer | 4 месяца назад | |||
SUSE-SU-2026:1174-1 Security update for LibVNCServer | 4 месяца назад | |||
SUSE-SU-2026:1173-1 Security update for LibVNCServer | 4 месяца назад | |||
SUSE-SU-2026:1124-1 Security update for LibVNCServer | 5 месяцев назад |
Уязвимостей на страницу