VNC: TightVNC Vncviewer HandleCoRREBPP Global Buffer Overflow
This signature detects attempts to exploit a known vulnerability against TightVNC vncviewer. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the user.
Extended Description
TightVNC code version 1.3.10 contains global buffer overflow in HandleCoRREBBP macro function, which can potentially result code execution. This attack appear to be exploitable via network connectivity.
Affected Products
Tightvnc tightvnc
References
CVE: CVE-2019-8287
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Tightvnc
7.5