libvncclient/cursor.c in LibVNCServer through 0.9.12 has a HandleCursorShape integer overflow and heap-based buffer overflow via a large height or width value. NOTE: this may overlap CVE-2019-15690.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Canonical
Subscribe
|
Ubuntu Linux
Subscribe
|
|
Debian
Subscribe
|
Debian Linux
Subscribe
|
|
Libvnc Project
Subscribe
|
Libvncserver
Subscribe
|
|
Redhat
Subscribe
|
|
|
Siemens
Subscribe
|
Simatic Itc1500
Subscribe
Simatic Itc1500 Firmware
Subscribe
Simatic Itc1500 Pro
Subscribe
Simatic Itc1500 Pro Firmware
Subscribe
Simatic Itc1900
Subscribe
Simatic Itc1900 Firmware
Subscribe
Simatic Itc1900 Pro
Subscribe
Simatic Itc1900 Pro Firmware
Subscribe
Simatic Itc2200
Subscribe
Simatic Itc2200 Firmware
Subscribe
Simatic Itc2200 Pro
Subscribe
Simatic Itc2200 Pro Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-11326 | libvncclient/cursor.c in LibVNCServer through 0.9.12 has a HandleCursorShape integer overflow and heap-based buffer overflow via a large height or width value. NOTE: this may overlap CVE-2019-15690. |
Ubuntu USN |
USN-4407-1 | LibVNCServer vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 11 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T02:53:09.241Z
Reserved: 2020-04-23T00:00:00
Link: CVE-2019-20788
No data.
Status : Modified
Published: 2020-04-23T19:15:12.763
Modified: 2024-11-21T04:39:21.960
Link: CVE-2019-20788
OpenCVE Enrichment
No data.
EUVD
Ubuntu USN