QID 378637

Date Published: 2023-07-17

QID 378637: TeamViewer File Parsing Out-Of-Bounds Read Remote Code Execution (RCE) Vulnerability

TeamViewer is a computer software package for remote control, desktop sharing, and file transfer between computers.

Affected Versions:
TeamViewer Desktop version prior to 15.21.2.0

QID Detection Logic(Authenticated)
This QID detects the vulnerable version by checking the TeamViewer.exe file version.

An attacker could create a problem in file parsing that could have allowed someone to execute arbitrary code and could have caused the binary to crash.

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as High - 6.8 severity.
  • Solution
    For more details please refer to vendor advisory: TeamViewer

    CVEs related to QID 378637

    Software Advisories
    Advisory ID Software Component Link
    https://community.teamviewer.com/English/discussion/117794/august-updates-security-patches/p1 URL Logo community.teamviewer.com/English/discussion/117794/august-updates-security-patches/p1