First published: Tue Apr 04 2017(Updated: )
In TigerVNC (SSecurityVeNCrypt.cxx SSecurityVeNCrypt::SSecurityVeNCrypt), an unauthenticated client can cause a small memory leak in the server. Upstream patch: <a href="https://github.com/TigerVNC/tigervnc/pull/441/commits/8f3e8663b3cf57c0b62d939d6953fbfcc112aadd">https://github.com/TigerVNC/tigervnc/pull/441/commits/8f3e8663b3cf57c0b62d939d6953fbfcc112aadd</a>
Affected Software | Affected Version | How to fix |
---|---|---|
Tigervnc |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-1438694 is considered low as it results in a small memory leak.
To fix REDHAT-BUG-1438694, you should apply the upstream patch from TigerVNC.
All versions of TigerVNC are affected by REDHAT-BUG-1438694.
Exploitation of REDHAT-BUG-1438694 does not lead to data loss but can cause a memory leak.
No, an unauthenticated client can exploit REDHAT-BUG-1438694.