CVE-2019-8264: Critical severity ultravnc vulnerability
UltraVNC revision 1203 has out-of-bounds access vulnerability in VNC client inside Ultra2 decoder, which can potentially result in code execution. This attack appears to be exploitable via network connectivity. This vulnerability has been fixed in revision 1204.
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the severity of CVE-2019-8264?
CVE-2019-8264 has been classified with a high severity due to its potential for remote code execution.
How do I fix CVE-2019-8264?
To mitigate CVE-2019-8264, update UltraVNC to revision 1204 or later.
What products are affected by CVE-2019-8264?
CVE-2019-8264 affects several Siemens SINAMICS products and UltraVNC versions up to 1.2.2.3.
Can CVE-2019-8264 be exploited remotely?
Yes, CVE-2019-8264 can be exploited remotely through network connectivity.
What coding issue does CVE-2019-8264 involve?
CVE-2019-8264 involves an out-of-bounds access vulnerability in the VNC client inside the Ultra2 decoder.