CVE Database
/

CVE-2019-8266

Back to search

CVE-2019-8266

Published: Mar 9, 2019

Modified: Sep 16, 2024

PUBLISHED

Description

UltraVNC revision 1207 has multiple out-of-bounds access vulnerabilities connected with improper usage of ClientConnection::Copybuffer function in VNC client code, which can potentially result in code execution. This attack appears to be exploitable via network connectivity. User interaction is required to trigger these vulnerabilities. These vulnerabilities have been fixed in revision 1208.

VendorProductVersions

Kaspersky Lab

UltraVNC

affected
1.2.2.3

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now