CVE-2017-5885
28.02.2017, 18:59
Multiple integer overflows in the (1) vnc_connection_server_message and (2) vnc_color_map_set functions in gtk-vnc before 0.7.0 allow remote servers to cause a denial of service (crash) or possibly execute arbitrary code via vectors involving SetColorMapEntries, which triggers a buffer overflow.Enginsight
Vendor | Product | Version |
---|---|---|
gnome | gtk-vnc | 𝑥 ≤ 0.6.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References