Go to:
Gentoo Home
Documentation
Forums
Lists
Bugs
Planet
Store
Wiki
Get Gentoo!
Gentoo's Bugzilla – Attachment 634760 Details for
Bug 701820
net-misc/ssvnc: multiple vulnerabilities (CVE-2018-{20020,20021,20022,20024})
Home
|
New
–
[Ex]
|
Browse
|
Search
|
Privacy Policy
|
[?]
|
Reports
|
Requests
|
Help
|
New Account
|
Log In
[x]
|
Forgot Password
Login:
[x]
CVE-2018-20020 Patch
ssvnc-1.0.29-libvncclient_CVE-2018-20020.patch (text/plain), 794 bytes, created by
David Turner
on 2020-04-26 21:48:54 UTC
(
hide
)
Description:
CVE-2018-20020 Patch
Filename:
MIME Type:
Creator:
David Turner
Created:
2020-04-26 21:48:54 UTC
Size:
794 bytes
patch
obsolete
>Description: CVE-2018-20020 > heap out-of-bound write vulnerability inside structure in VNC client code that > can result remote code execution >--- > >Author: Abhijith PA <abhijith@debian.org> >Origin: https://github.com/LibVNC/libvncserver/commit/7b1ef0ffc4815cab9a96c7278394152bdc89dc4d >Bug: https://github.com/LibVNC/libvncserver/issues/250 >Bug-Debian: https://bugs.debian.org/916941 >Last-Update: 2018-12-23 > >--- a/vnc_unixsrc/vncviewer/corre.c >+++ b/vnc_unixsrc/vncviewer/corre.c >@@ -76,7 +76,7 @@ > FillRectangle(rx, ry, rw, rh, gcv.foreground); > #endif > >- if (!ReadFromRFBServer(buffer, hdr.nSubrects * (4 + (BPP / 8)))) >+ if (hdr.nSubrects > BUFFER_SIZE / (4 + (BPP / 8)) || !ReadFromRFBServer(buffer, hdr.nSubrects * (4 + (BPP / 8)))) > return False; > > ptr = (CARD8 *)buffer;
You cannot view the attachment while viewing its details because your browser does not support IFRAMEs.
View the attachment on a separate page
.
View Attachment As Raw
Actions:
View
Attachments on
bug 701820
: 634760 |
634762
|
634764
|
634766
|
634768