CVE-2020-14403
published 2020-06-17CVE-2020-14403: An issue was discovered in LibVNCServer before 0.9.13. libvncserver/hextile.c allows out-of-bounds access via encodings.
medium5.4CVSS 3.1
AVNACLPRLUINSUCLINAL
An issue was discovered in LibVNCServer before 0.9.13. libvncserver/hextile.c allows out-of-bounds access via encodings.
Affected
25 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| david_king | vino | >= 0 < 3.8.1-0ubuntu9.3 | 3.8.1-0ubuntu9.3 |
| david_king | vino | >= 0 < 3.22.0-3ubuntu1.1 | 3.22.0-3ubuntu1.1 |
| david_king | vino | >= 0 < 3.22.0-5ubuntu2.1 | 3.22.0-5ubuntu2.1 |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | libvncserver | < libvncserver 0.9.13+dfsg-1 (bookworm) | libvncserver 0.9.13+dfsg-1 (bookworm) |
| libvnc_project | libvncserver | <= 0.9.12 | — |
| libvncserver_project | libvncserver | >= 0 < 0.9.13+dfsg-1 | 0.9.13+dfsg-1 |
| libvncserver_project | libvncserver | >= 0 < 0.9.13+dfsg-1 | 0.9.13+dfsg-1 |
| libvncserver_project | libvncserver | >= 0 < 0.9.13+dfsg-1 | 0.9.13+dfsg-1 |
| libvncserver_project | libvncserver | >= 0 < 0.9.13+dfsg-1 | 0.9.13+dfsg-1 |
| libvncserver_project | libvncserver | >= 0 < 0.9.10+dfsg-3ubuntu0.16.04.5 | 0.9.10+dfsg-3ubuntu0.16.04.5 |
| libvncserver_project | libvncserver | >= 0 < 0.9.11+dfsg-1ubuntu1.3 | 0.9.11+dfsg-1ubuntu1.3 |
| libvncserver_project | libvncserver | >= 0 < 0.9.12+dfsg-9ubuntu0.2 | 0.9.12+dfsg-9ubuntu0.2 |
| siemens | simatic_itc1500_firmware | >= 3.0.0.0 < 3.2.1.0 | 3.2.1.0 |
| siemens | simatic_itc1500_pro_firmware | >= 3.0.0.0 < 3.2.1.0 | 3.2.1.0 |
| siemens | simatic_itc1900_firmware | >= 3.0.0.0 < 3.2.1.0 | 3.2.1.0 |
| siemens | simatic_itc1900_pro_firmware | >= 3.0.0.0 < 3.2.1.0 | 3.2.1.0 |
| siemens | simatic_itc2200_firmware | >= 3.0.0.0 < 3.2.1.0 | 3.2.1.0 |
| siemens | simatic_itc2200_pro_firmware | >= 3.0.0.0 < 3.2.1.0 | 3.2.1.0 |
CVSS provenance
nvdv3.15.4MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L
osv7.5HIGH