← Back

Tigervnc

tigervnc

30 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Tigervnc
tigervnc

CVEs (30)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Tigervnc
1Tigervnc
May 13, 2026
Apr 1, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In TigerVNC 1.7.1 (CConnection.cxx CConnection::CConnection), an unauthenticated client can cause a small memory leak in the server.
1Tigervnc
1Tigervnc
May 13, 2026
Apr 1, 2017
N/A· v4
6.5 MEDIUM· v3
4.0 MEDIUM· v2
In TigerVNC 1.7.1 (SMsgReader.cxx SMsgReader::readClientCutText), by causing an integer overflow, an authenticated client can crash the server.
1Tigervnc
1Tigervnc
May 13, 2026
Apr 1, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In TigerVNC 1.7.1 (SSecurityPlain.cxx SSecurityPlain::processMsg), unauthenticated users can crash the server by sending long usernames.
1Tigervnc
1Tigervnc
May 13, 2026
Apr 1, 2017
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
In TigerVNC 1.7.1 (VNCSConnectionST.cxx VNCSConnectionST::fence), an authenticated client can cause a double free, leading to denial of service or potentially code execution.
1Tigervnc
1Tigervnc
May 13, 2026
Apr 1, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In TigerVNC 1.7.1 (SSecurityVeNCrypt.cxx SSecurityVeNCrypt::SSecurityVeNCrypt), an unauthenticated client can cause a small memory leak in the server.
1Tigervnc
1Tigervnc
May 13, 2026
Feb 28, 2017
N/A· v4
9.8 CRITICAL· v3
6.8 MEDIUM· v2
Buffer overflow in the ModifiablePixelBuffer::fillRect function in TigerVNC before 1.7.1 allows remote servers to execute arbitrary code via an RRE message with subrectangle outside framebuffer boundaries.
2Opensuse
Tigervnc
2Leap
Tigervnc
May 13, 2026
Feb 28, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
The Xvnc server in TigerVNC allows remote attackers to cause a denial of service (invalid memory access and crash) by terminating a TLS handshake early.
2Redhat
Tigervnc
5Enterprise Linux Desktop
Enterprise Linux Hpc NodeEnterprise Linux Server+2 more
May 6, 2026
Dec 14, 2016
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
XRegion in TigerVNC allows remote VNC servers to cause a denial of service (NULL pointer dereference) by leveraging failure to check a malloc return value, a similar issue to CVE-2014-6052.
1Tigervnc
1Tigervnc
May 6, 2026
Oct 16, 2014
N/A· v4
N/A· v3
7.5 HIGH· v2
Integer overflow in TigerVNC allows remote VNC servers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to screen size handling, which triggers a heap-based buffer overflow, a...Show more
Integer overflow in TigerVNC allows remote VNC servers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to screen size handling, which triggers a heap-based buffer overflow, a similar issue to CVE-2014-6051.Show less
1Tigervnc
1Tigervnc
Apr 29, 2026
May 26, 2011
N/A· v4
N/A· v3
5.8 MEDIUM· v2
The CSecurityTLS::processMsg function in common/rfb/CSecurityTLS.cxx in the vncviewer component in TigerVNC 1.1beta1 does not properly verify the server's X.509 certificate, which allows man-in-the-middle attackers to sp...Show more
The CSecurityTLS::processMsg function in common/rfb/CSecurityTLS.cxx in the vncviewer component in TigerVNC 1.1beta1 does not properly verify the server's X.509 certificate, which allows man-in-the-middle attackers to spoof a TLS VNC server via an arbitrary certificate.Show less