CVE Database
/

CVE-2006-1652

Back to search

CVE-2006-1652

Published: Apr 6, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple buffer overflows in (a) UltraVNC (aka Ultr@VNC) 1.0.1 and earlier and (b) tabbed_viewer 1.29 (1) allow user-assisted remote attackers to execute arbitrary code via a malicious server that sends a long string to a client that connects on TCP port 5900, which triggers an overflow in Log::ReallyPrint; and (2) allow remote attackers to cause a denial of service (server crash) via a long HTTP GET request to TCP port 5800, which triggers an overflow in VNCLog::ReallyPrint.

VendorProductVersions

n/a

n/a

affected
n/a

References

1642
exploit
x_refsource_EXPLOIT-DB
untr@vnc-error-bo(25648)
vdb-entry
x_refsource_XF
1643
exploit
x_refsource_EXPLOIT-DB
19513
third-party-advisory
x_refsource_SECUNIA
ADV-2006-1240
vdb-entry
x_refsource_VUPEN
674
third-party-advisory
x_refsource_SREASON
17378
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now