vulnerability

Ubuntu: (Multiple Advisories) (CVE-2016-9942): LibVNCServer vulnerabilities

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
Dec 31, 2016
Added
Jan 12, 2017
Modified
Apr 14, 2025

Description

Josef Gajdusek discovered that the LibVNCServer client library incorrectly
handled certain FrameBufferUpdate messages. If a user were tricked into
connecting to a malicious server, an attacker could use this issue to cause
a denial of service, or possibly execute arbitrary code. (CVE-2016-9941,
CVE-2016-9942)

Solution(s)

ubuntu-upgrade-italc-clientubuntu-upgrade-italc-masterubuntu-upgrade-libitalccoreubuntu-upgrade-libvncclient1ubuntu-upgrade-libvncserver0ubuntu-upgrade-libvncserver1
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.