PT-2019-5951 · Ultravnc · Ultravnc
Published
2019-03-05
·
Updated
2021-06-28
·
CVE-2019-8263
CVSS v2.0
7.1
High
| Vector | AV:N/AC:M/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
UltraVNC revision 1205
Description
The issue is related to a stack-based buffer overflow in the VNC client code inside the ShowConnInfo routine. This can lead to a denial of service (DoS) condition. The attack appears to be exploitable via network connectivity and requires user interaction to be triggered.
Recommendations
For UltraVNC revision 1205, update to revision 1206 to resolve the issue.
Fix
Stack Overflow
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ultravnc