CVE-2017-5885
28.02.2017, 18:59
Multiple integer overflows in the (1) vnc_connection_server_message and (2) vnc_color_map_set functions in gtk-vnc before 0.7.0 allow remote servers to cause a denial of service (crash) or possibly execute arbitrary code via vectors involving SetColorMapEntries, which triggers a buffer overflow.Enginsight
| Vendor | Product | Version |
|---|---|---|
| gnome | gtk-vnc | 𝑥 ≤ 0.6.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References