Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in LibVNCServer through 0.9.11. rfbProcessClientNormalMessage() in rfbserver.c does not sanitize msg.cct.length, leading to access to uninitialized and potentially sensitive data or possibly unspecified other impact (e.g., an integer overflow) via specially crafted VNC packets.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
LibVNCServer 输入验证错误漏洞
Vulnerability Description
LibVNCServer是一个VNC服务器C类库,它可开发VNC服务器或VNC客户端。 LibVNCServer 0.9.11及之前的版本中存在安全漏洞,该漏洞源于rfbserver.c文件的‘rfbProcessClientNormalMessage()’函数没有过滤msg.cct.length。攻击者可借助特制的VNC数据包利用该漏洞访问未初始化的敏感数据。
CVSS Information
N/A
Vulnerability Type
N/A