Out-of-bounds read in UltraVNC - CVE-2019-8270
Published: November 26, 2019 / Updated: November 27, 2019
UltraVNC
Detailed vulnerability description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to out-of-bounds read in VNC client code inside Ultra decoder. A remote attacker that controls a malicious VNC server can trick a user to connect to it and cause a denial of service condition on the target system.