CVE-2017-5581

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
28/02/2017
Last modified:
20/04/2025

Description

Buffer overflow in the ModifiablePixelBuffer::fillRect function in TigerVNC before 1.7.1 allows remote servers to execute arbitrary code via an RRE message with subrectangle outside framebuffer boundaries.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:tigervnc:tigervnc:*:*:*:*:*:*:*:* 1.7 (including)