Critical Infrastructure Sectors: Chemical, Critical Manufacturing, Energy, Food and Agriculture, Water and Wastewater Systems
libvncclient/cursor.c in LibVNCServer up to and including 0.9.12 has a HandleCursorShape integer overflow and heap-based buffer overflow via a large height or width value. NOTE: this may overlap CVE-2019-15690.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
libvnc project libvncserver |
||
canonical ubuntu linux 14.04 |
||
canonical ubuntu linux 16.04 |
||
canonical ubuntu linux 18.04 |
||
canonical ubuntu linux 18.10 |
||
debian debian linux 8.0 |
||
debian debian linux 9.0 |
||
siemens simatic_itc1500_firmware |
||
siemens simatic_itc1500_pro_firmware |
||
siemens simatic_itc1900_firmware |
||
siemens simatic_itc1900_pro_firmware |
||
siemens simatic_itc2200_firmware |
||
siemens simatic_itc2200_pro_firmware |