SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2011-0904

The rfbSendFramebufferUpdate function in server/libvncserver/rfbserver.c in vino-server in Vino 2.x before 2.28.3, 2.32.x before 2.32.2, 3.0.x before 3.0.2, and 3.1.x before 3.1.1, when raw encoding is used, allows remote authenticated users to cause a…

LOW 3.5EPSS 2.30%

Does this matter?

Lower severity and a low EPSS score (2.30%). Track it; it rarely justifies an emergency change on its own.

Description

The rfbSendFramebufferUpdate function in server/libvncserver/rfbserver.c in vino-server in Vino 2.x before 2.28.3, 2.32.x before 2.32.2, 3.0.x before 3.0.2, and 3.1.x before 3.1.1, when raw encoding is used, allows remote authenticated users to cause a denial of service (daemon crash) via a large (1) X position or (2) Y position value in a framebuffer update request that triggers an out-of-bounds memory access, related to the rfbTranslateNone and rfbSendRectEncodingRaw functions.

CVSS 2.0
3.5 LOWAV:N/AC:M/Au:S/C:N/I:N/A:P
EPSS
2.30% probability · 82th percentile
CISA KEV
Not listed
Weakness
CWE-119
Affected
david king/vino
Source
cve@mitre.org

References

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.