An issue was discovered in LibVNCServer before 0.9.13. libvncclient/tls_openssl.c has a NULL pointer dereference.
[ { "signature_version": "v1", "id": "CVE-2020-14396-a63a5cc6", "source": "https://github.com/libvnc/libvncserver/commit/33441d90a506d5f3ae9388f2752901227e430553", "target": { "file": "libvncclient/tls_openssl.c", "function": "open_ssl_connection" }, "digest": { "function_hash": "289870025509888091998254113739023981642", "length": 2497.0 }, "signature_type": "Function", "deprecated": false }, { "signature_version": "v1", "id": "CVE-2020-14396-c848c6fe", "source": "https://github.com/libvnc/libvncserver/commit/33441d90a506d5f3ae9388f2752901227e430553", "target": { "file": "libvncclient/tls_openssl.c" }, "digest": { "threshold": 0.9, "line_hashes": [ "80226186285922043742937663968878156146", "23982019333981318047145580796055385006", "78556645990089934348837580570819060018", "129536370082382921633149900127119405369", "179482101782982562967665731851017857863", "57481811473761647249782608015147496236", "170469348421599386093090533339237144854", "132784373091711427979626134283971151697" ] }, "signature_type": "Line", "deprecated": false } ]