Heap Buffer Overflow in TigerVNC Versions Prior to 1.10.1
CVE-2019-15694
7.2HIGH
What is CVE-2019-15694?
TigerVNC versions prior to 1.10.1 are affected by a heap buffer overflow vulnerability that occurs within the DecodeManager::decodeRect function. This security flaw arises from a signedness error during the processing of MemOutStream, which could allow an attacker to exploit the vulnerability through network connectivity. Successful exploitation may lead to remote code execution, posing significant risks to affected systems.
Affected Version(s)
TigerVNC 1.10.0