[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2015-623 --- tigervnc

ID: oval:org.secpod.oval:def:1200150Date: (C)2016-01-04   (M)2021-06-02
Class: PATCHFamily: unix




An integer overflow flaw, leading to a heap-based buffer overflow, was found in the way TigerVNC handled screen sizes. A malicious VNC server could use this flaw to cause a client to crash or, potentially, execute arbitrary code on the client.A NULL pointer dereference flaw was found in TigerVNC"s XRegion. A malicious VNC server could use this flaw to cause a client to crash.

Platform:
Amazon Linux AMI
Product:
tigervnc
Reference:
ALAS-2015-623
CVE-2014-8240
CVE-2014-8241
CVE    2
CVE-2014-8241
CVE-2014-8240
CPE    7
cpe:/o:amazon:linux
cpe:/a:tigervnc:tigervnc
cpe:/a:tigervnc:tigervnc:1.0.0
cpe:/a:tigervnc:tigervnc:1.0.1
...

© SecPod Technologies