An issue was discovered in LibVNCServer before 0.9.13. libvncclient/tls_openssl.c has a NULL pointer dereference.
[
{
"signature_version": "v1",
"signature_type": "Function",
"id": "CVE-2020-14396-a63a5cc6",
"digest": {
"function_hash": "289870025509888091998254113739023981642",
"length": 2497.0
},
"source": "https://github.com/libvnc/libvncserver/commit/33441d90a506d5f3ae9388f2752901227e430553",
"target": {
"function": "open_ssl_connection",
"file": "libvncclient/tls_openssl.c"
},
"deprecated": false
},
{
"signature_version": "v1",
"signature_type": "Line",
"id": "CVE-2020-14396-c848c6fe",
"digest": {
"threshold": 0.9,
"line_hashes": [
"80226186285922043742937663968878156146",
"23982019333981318047145580796055385006",
"78556645990089934348837580570819060018",
"129536370082382921633149900127119405369",
"179482101782982562967665731851017857863",
"57481811473761647249782608015147496236",
"170469348421599386093090533339237144854",
"132784373091711427979626134283971151697"
]
},
"source": "https://github.com/libvnc/libvncserver/commit/33441d90a506d5f3ae9388f2752901227e430553",
"target": {
"file": "libvncclient/tls_openssl.c"
},
"deprecated": false
}
]