RealVNC 4.1.2 'CMsgReader::readRect()' Remote Code Execution Vulnerability
BID:31832
Info
RealVNC 4.1.2 'CMsgReader::readRect()' Remote Code Execution Vulnerability
| Bugtraq ID: | 31832 |
| Class: | Unknown |
| CVE: |
CVE-2008-4770 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 20 2008 12:00AM |
| Updated: | Apr 16 2015 05:52PM |
| Credit: | The vendor disclosed this issue. |
| Vulnerable: |
RealVNC RealVNC Free Edition 4.1.2 |
| Not Vulnerable: |
RealVNC RealVNC Free Edition 4.1.3 |
Discussion
RealVNC 4.1.2 'CMsgReader::readRect()' Remote Code Execution Vulnerability
RealVNC Viewer is prone to a remote code-execution vulnerability because it fails to adequately handle certain encoding types.
An attacker can exploit this issue to execute arbitrary code in the context of the vulnerable process. Failed exploit attempts are likely to result in denial-of-service conditions.
This issue may be related to those discussed in BID 30499 (RealVNC 4.1.2 'vncviewer.exe' Remote Denial of Service Vulnerability) or BID 19599 (RealVNC Clipboard Update Integer Overflow Vulnerability); however this has not been confirmed.
Versions prior to RealVNC Free Edition 4.1.3 are vulnerable to this issue. Additional products may also be vulnerable.
RealVNC Viewer is prone to a remote code-execution vulnerability because it fails to adequately handle certain encoding types.
An attacker can exploit this issue to execute arbitrary code in the context of the vulnerable process. Failed exploit attempts are likely to result in denial-of-service conditions.
This issue may be related to those discussed in BID 30499 (RealVNC 4.1.2 'vncviewer.exe' Remote Denial of Service Vulnerability) or BID 19599 (RealVNC Clipboard Update Integer Overflow Vulnerability); however this has not been confirmed.
Versions prior to RealVNC Free Edition 4.1.3 are vulnerable to this issue. Additional products may also be vulnerable.
Exploit / POC
RealVNC 4.1.2 'CMsgReader::readRect()' Remote Code Execution Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
RealVNC 4.1.2 'CMsgReader::readRect()' Remote Code Execution Vulnerability
Solution:
The vendor has released an updated version; please see the references for more information.
Solution:
The vendor has released an updated version; please see the references for more information.
References
RealVNC 4.1.2 'CMsgReader::readRect()' Remote Code Execution Vulnerability
References:
References:
- RealVNC Homepage (RealVNC)
- VNC 4.1 - Release Notes (RealVNC)