CVE-2014-8241

Severity
9.8CRITICAL
EPSS
0.7%
top 28.09%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 14
Latest updateMay 17

Description

XRegion in TigerVNC allows remote VNC servers to cause a denial of service (NULL pointer dereference) by leveraging failure to check a malloc return value, a similar issue to CVE-2014-6052.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

🔴Vulnerability Details

3
GHSA
GHSA-gq2g-qwmw-m5q3: XRegion in TigerVNC allows remote VNC servers to cause a denial of service (NULL pointer dereference) by leveraging failure to check a malloc return v2022-05-17
OSV
CVE-2014-8241: XRegion in TigerVNC allows remote VNC servers to cause a denial of service (NULL pointer dereference) by leveraging failure to check a malloc return v2016-12-14
CVEList
CVE-2014-8241: XRegion in TigerVNC allows remote VNC servers to cause a denial of service (NULL pointer dereference) by leveraging failure to check a malloc return v2016-12-14

📋Vendor Advisories

2
Red Hat
tigervnc: NULL pointer dereference flaw in XRegion2014-10-10
Debian
CVE-2014-8241: tigervnc - XRegion in TigerVNC allows remote VNC servers to cause a denial of service (NULL...2014

💬Community

1
Bugzilla
CVE-2014-8241 tigervnc: NULL pointer dereference flaw in XRegion2014-10-10
CVE-2014-8241 (CRITICAL CVSS 9.8) | XRegion in TigerVNC allows remote V | cvebase.io