ZeroHour

CVE-2019-8260

CVSS 3.0
9.8 critical
EPSS
2%p82
Published
()
Modified
Description

UltraVNC revision 1199 has a out-of-bounds read vulnerability in VNC client RRE decoder code, caused by multiplication overflow. This attack appears to be exploitable via network connectivity. This vulnerability has been fixed in revision 1200.

Vendors
uvnc
Products
ultravnc
Weakness
CWE-125
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.