cbcvebase.
CVE-2014-6051
published 2014-09-30

CVE-2014-6051: Integer overflow in the MallocFrameBuffer function in vncviewer.c in LibVNCServer 0.9.9 and earlier allows remote VNC servers to cause a denial of service…

high7.5CVSS 3.1
AVNACLAuNCPIPAP
Integer overflow in the MallocFrameBuffer function in vncviewer.c in LibVNCServer 0.9.9 and earlier allows remote VNC servers to cause a denial of service (crash) and possibly execute arbitrary code via an advertisement for a large screen size, which triggers a heap-based buffer overflow.

Affected

24 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianlibvncserver< libvncserver 0.9.9+dfsg-6.1 (bookworm)libvncserver 0.9.9+dfsg-6.1 (bookworm)
debiantigervnc< tigervnc 1.7.0-1 (bookworm)tigervnc 1.7.0-1 (bookworm)
debianveyon< libvncserver 0.9.9+dfsg-6.1 (bookworm)libvncserver 0.9.9+dfsg-6.1 (bookworm)
fedoraprojectfedora
fedoraprojectfedora
libvncserverlibvncserver<= 0.9.9
libvncserver_projectlibvncserver>= 0 < 0.9.9+dfsg-6.10.9.9+dfsg-6.1
libvncserver_projectlibvncserver>= 0 < 0.9.9+dfsg-6.10.9.9+dfsg-6.1
libvncserver_projectlibvncserver>= 0 < 0.9.9+dfsg-6.10.9.9+dfsg-6.1
libvncserver_projectlibvncserver>= 0 < 0.9.9+dfsg-6.10.9.9+dfsg-6.1
libvncserver_projectlibvncserver>= 0 < 0.9.9+dfsg-1ubuntu1.10.9.9+dfsg-1ubuntu1.1
oraclesolaris
redhatenterprise_linux_server_aus
redhatenterprise_linux_server_eus
tigervnctigervnc
tigervnctigervnc
tigervnctigervnc
tigervnctigervnc
tigervnctigervnc
tigervnctigervnc>= 0 < 1.7.0-11.7.0-1
tigervnctigervnc>= 0 < 1.7.0-11.7.0-1
tigervnctigervnc>= 0 < 1.7.0-11.7.0-1
tigervnctigervnc>= 0 < 1.7.0-11.7.0-1

CVSS provenance

nvd7.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH