Multiple Improper Null Termination Vulnerabilities in UltraVNC Revision 1211

Multiple Improper Null Termination Vulnerabilities in UltraVNC Revision 1211

CVE-2019-8275 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

UltraVNC revision 1211 has multiple improper null termination vulnerabilities in VNC server code, which result in out-of-bound data being accessed by remote users. This attack appears to be exploitable via network connectivity. These vulnerabilities have been fixed in revision 1212.

Learn more about our Cis Benchmark Audit For Server Software.