TightVNC code version 1.3.10 contains heap buffer overflow in InitialiseRFBConnection function, which can potentially result code execution. This attack appear to be exploitable via network connectivity.
References
Configurations
Information
Published : 2019-10-29 19:15
Updated : 2020-12-09 17:15
NVD link : CVE-2019-15679
Mitre link : CVE-2019-15679
JSON object : View
Products Affected
tightvnc
- tightvnc
CWE
CWE-787
Out-of-bounds Write
