cbcvebase.
CVE-2020-26117
published 2020-09-27

CVE-2020-26117: In rfb/CSecurityTLS.cxx and rfb/CSecurityTLS.java in TigerVNC before 1.11.0, viewers mishandle TLS certificate exceptions. They store the certificates as…

PriorityP342high8.1CVSS 3.1
AVNACLPRNUIRSUCHIHAN
EPSS
3.06%
86.1th percentile
In rfb/CSecurityTLS.cxx and rfb/CSecurityTLS.java in TigerVNC before 1.11.0, viewers mishandle TLS certificate exceptions. They store the certificates as authorities, meaning that the owner of a certificate could impersonate any server after a client had added an exception.

Affected

8 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debiantigervnc< tigervnc 1.10.1+dfsg-9 (bookworm)tigervnc 1.10.1+dfsg-9 (bookworm)
opensuseleap
tigervnctigervnc< 1.11.01.11.0
tigervnctigervnc>= 0 < 1.10.1+dfsg-91.10.1+dfsg-9
tigervnctigervnc>= 0 < 1.10.1+dfsg-91.10.1+dfsg-9
tigervnctigervnc>= 0 < 1.10.1+dfsg-91.10.1+dfsg-9
tigervnctigervnc>= 0 < 1.10.1+dfsg-91.10.1+dfsg-9

CVSS provenance

nvdv3.18.1HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
nvdv2.05.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:N
osv8.1HIGH
vendor_debian8.1HIGH
vendor_redhat8.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.