MidnightBSD

Advisories for realvnc

CVE-2008-3493 MEDIUM

vncviewer.exe in RealVNC Windows Client 4.1.2.0 allows remote VNC servers to cause a denial of service (application crash) via a crafted frame buffer update packet.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
realvnc realvnc_windows_client 4.1.2.0
CVE-2008-4770 HIGH

The CMsgReader::readRect function in the VNC Viewer component in RealVNC VNC Free Edition 4.0 through 4.1.2, Enterprise Edition E4.0 through E4.4.2, and Personal Edition P4.0 through P4.4.2 allows remote VNC servers to execute arbitrary code via crafted RFB protocol data, related to "encoding type."

CVSS 2.0

Severity: HIGH

Problem Type: CWE-20,

Products Affected

Vendor Product Version
realvnc realvnc 4.1.2
realvnc realvnc p4.4.2
realvnc realvnc e4.0
realvnc realvnc p4.0
realvnc realvnc 4.4.2
realvnc realvnc 4.0
CVE-2013-6886 HIGH

RealVNC VNC 5.0.6 on Mac OS X, Linux, and UNIX allows local users to gain privileges via a crafted argument to the (1) vncserver, (2) vncserver-x11, or (3) Xvnc helper.

CVSS 2.0

Severity: HIGH

Problem Type: CWE-264,

Products Affected

Vendor Product Version
realvnc realvnc 5.0.6