TightVNC code version 1.3.10 contains heap buffer overflow in InitialiseRFBConnection function, which can potentially result code execution. This attack appear to be exploitable via network connectivity.
References
Configurations
Information
Published : 2019-10-29 12:15
Updated : 2020-12-09 09:15
NVD link : CVE-2019-15679
Mitre link : CVE-2019-15679
JSON object : View
CWE
CWE-787
Out-of-bounds Write
Products Affected
tightvnc
- tightvnc