CVE-2019-15690

LibVNCServer 0.9.12 release and earlier contains heap buffer overflow vulnerability within the HandleCursorShape() function in libvncclient/cursor.c. An attacker sends cursor shapes with specially crafted dimensions, which can result in remote code execution.
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) La versión 0.9.12 y anteriores de LibVNCServer contienen una vulnerabilidad de desbordamiento del búfer de montón dentro de la función HandleCursorShape() en libvncclient/cursor.c. Un atacante envía formas de cursor con dimensiones manipulado especiales, lo que puede provocar la ejecución remota de código.

24 Jan 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-24 18:15

Updated : 2026-06-17 02:20


NVD link : CVE-2019-15690

Mitre link : CVE-2019-15690

CVE.ORG link : CVE-2019-15690


JSON object : View

Products Affected

No product.

CWE
CWE-122

Heap-based Buffer Overflow