CVE-2019-8287 PUBLISHED

TightVNC code version 1.3.10 contains global buffer overflow in HandleCoRREBBP macro function, which can potentially result code execution. This attack appear to be exploitable via network connectivity.

EPSS 2.26% · 84.5th percentile

Risk Scores

EPSS Score
2.26%
84.5th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTStightvnc1.3.10-0ubuntu3, 0, 1.3.10-0ubuntu2
Ubuntu:20.04:LTStightvnc0, 1.3.10-0ubuntu5
Ubuntu:22.04:LTStightvnc1:1.3.10-3, 1:1.3.10-5, 0
Ubuntu:24.04:LTStightvnc1:1.3.10-7build1, 1:1.3.10-8, 1:1.3.10-7build2
Ubuntu:18.04:LTStightvnc0, 1.3.10-0ubuntu4, 1.3.10-0ubuntu3
Ubuntu:25.10tightvnc1:1.3.10-10, 0, 1:1.3.10-9
Ubuntu:Pro:14.04:LTStightvnc0, 1.3.9-6.4ubuntu1, 1.3.9-6.4

Timeline

References

Open in Interactive Console →