Vulnerabilities (CVE)

Filtered by vendor Tigervnc Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-8240 1 Tigervnc 1 Tigervnc 2017-09-08 7.5 HIGH N/A
Integer overflow in TigerVNC allows remote VNC servers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to screen size handling, which triggers a heap-based buffer overflow, a similar issue to CVE-2014-6051.
CVE-2011-1775 1 Tigervnc 1 Tigervnc 2011-09-07 5.8 MEDIUM N/A
The CSecurityTLS::processMsg function in common/rfb/CSecurityTLS.cxx in the vncviewer component in TigerVNC 1.1beta1 does not properly verify the server's X.509 certificate, which allows man-in-the-middle attackers to spoof a TLS VNC server via an arbitrary certificate.