First published: Tue Mar 05 2019(Updated: )
UltraVNC revision 1198 has a buffer underflow vulnerability in VNC client code, which can potentially result in code execution. This attack appears to be exploitable via network connectivity. This vulnerability has been fixed in revision 1199.
Credit: vulnerability@kaspersky.com
Affected Software | Affected Version | How to fix |
---|---|---|
UltraVNC | <1.2.2.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-15361 is classified as a critical vulnerability due to the potential for code execution.
The vulnerability can be mitigated by upgrading to UltraVNC revision 1199 or later.
UltraVNC versions up to 1.2.2.3 are affected by CVE-2018-15361.
Yes, CVE-2018-15361 is exploitable via network connectivity.
CVE-2018-15361 is identified as a buffer underflow vulnerability.