Bug#1007239: tightvnc: CVE-2022-23967 - overflow in vncviewer, possible duplicate report of CVE-2019-15679

2022-03-14 Thread Sven Geuer
Hello Neil, On Mon, 2022-03-14 at 12:02 +, Neil Williams wrote: > Source: tightvnc > Version: 1:1.3.10-5 > Severity: important > Tags: security > X-Debbugs-Cc: codeh...@debian.org, Debian Security Team > > > Hi, > > The following vulnerability was published for tightvnc. > >

Bug#1007239: tightvnc: CVE-2022-23967 - overflow in vncviewer, possible duplicate report of CVE-2019-15679

2022-03-14 Thread Neil Williams
Source: tightvnc Version: 1:1.3.10-5 Severity: important Tags: security X-Debbugs-Cc: codeh...@debian.org, Debian Security Team Hi, The following vulnerability was published for tightvnc. CVE-2022-23967[0]: | In TightVNC 1.3.10, there is an integer signedness error and resultant | heap-based