Heap Buffer Overflow in GStreamer's RFB/VNC Client
CVE-2026-52720

8.8HIGH

What is CVE-2026-52720?

A vulnerability exists within GStreamer's librfb (RFB/VNC client) that causes a heap buffer overflow due to improper validation of rectangle bounds. This flaw allows a malicious VNC server to exploit the incorrect bounds check, which only validates the overall area and not the individual dimensions. An attacker could trick a user into connecting to a compromised VNC server, potentially leading to out-of-bounds heap writes. Such exploitation could result in unauthorized code execution or cause the application to crash, necessitating immediate attention and patching.

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Red Hat would like to thank JUNYI LIU for reporting this issue.
.