In TigerVNC 1.7.1 (SMsgReader.cxx SMsgReader::readClientCutText), by causing an integer overflow, an authenticated client can crash the server.
{
"availability": "No subscription required",
"binaries": [
{
"binary_version": "1.7.0+dfsg-8ubuntu2",
"binary_name": "tigervnc-common"
},
{
"binary_version": "1.7.0+dfsg-8ubuntu2",
"binary_name": "tigervnc-common-dbgsym"
},
{
"binary_version": "1.7.0+dfsg-8ubuntu2",
"binary_name": "tigervnc-scraping-server"
},
{
"binary_version": "1.7.0+dfsg-8ubuntu2",
"binary_name": "tigervnc-scraping-server-dbgsym"
},
{
"binary_version": "1.7.0+dfsg-8ubuntu2",
"binary_name": "tigervnc-standalone-server"
},
{
"binary_version": "1.7.0+dfsg-8ubuntu2",
"binary_name": "tigervnc-standalone-server-dbgsym"
},
{
"binary_version": "1.7.0+dfsg-8ubuntu2",
"binary_name": "tigervnc-viewer"
},
{
"binary_version": "1.7.0+dfsg-8ubuntu2",
"binary_name": "tigervnc-viewer-dbgsym"
},
{
"binary_version": "1.7.0+dfsg-8ubuntu2",
"binary_name": "tigervnc-xorg-extension"
},
{
"binary_version": "1.7.0+dfsg-8ubuntu2",
"binary_name": "tigervnc-xorg-extension-dbgsym"
}
]
}