CVE-2019-8267: High severity ultravnc vulnerability
Published Mar 1, 2019
·Updated
UltraVNC revision 1207 has out-of-bounds read vulnerability in VNC client code inside TextChat module, which results in a denial of service (DoS) condition. This attack appears to be exploitable via network connectivity. This vulnerability has been fixed in revision 1208.
Affected Software
1 affected component
Uvnc Ultravnc<1.2.2.3
Event History
Mar 8, 2019
CVE Published
11:29 PM
Data Sourced
via NVD·11:29 PM
DescriptionSeverityWeaknessAffected Software
Mar 9, 2019
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-8267?
CVE-2019-8267 is classified as a denial of service (DoS) vulnerability.
2
How do I fix CVE-2019-8267?
To fix CVE-2019-8267, upgrade to UltraVNC revision 1208 or later.
3
What causes the CVE-2019-8267 vulnerability?
The CVE-2019-8267 vulnerability is caused by an out-of-bounds read in the VNC client code specifically in the TextChat module.
4
Who is affected by CVE-2019-8267?
CVE-2019-8267 affects UltraVNC versions up to 1.2.2.3.
5
Can CVE-2019-8267 be exploited remotely?
Yes, CVE-2019-8267 can be exploited remotely via network connectivity.