PT-2019-5951 · Ultravnc · Ultravnc

Published

2019-03-05

·

Updated

2021-06-28

·

CVE-2019-8263

CVSS v2.0

7.1

High

VectorAV:N/AC:M/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions UltraVNC revision 1205
Description The issue is related to a stack-based buffer overflow in the VNC client code inside the ShowConnInfo routine. This can lead to a denial of service (DoS) condition. The attack appears to be exploitable via network connectivity and requires user interaction to be triggered.
Recommendations For UltraVNC revision 1205, update to revision 1206 to resolve the issue.

Fix

Stack Overflow

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-03843
CVE-2019-8263

Affected Products

Ultravnc