Pavel Cheremushkin from Kaspersky Lab various implementations of the VNC (Virtual Network Computing) remote access system and identified 37 vulnerabilities caused by memory handling issues. The vulnerabilities found in VNC server implementations can only be exploited by authenticated users, while attacks on vulnerabilities in the client code are possible when a user connects to a server controlled by an attacker.
The highest number of vulnerabilities was found in the , available only for the Windows platform. A total of 22 vulnerabilities were identified in UltraVNC. 13 vulnerabilities can potentially lead to code execution in the system, 5 to leaking the contents of memory areas, and 4 to denial of service.
The vulnerabilities have been fixed in the release .
In the open library (LibVNCServer and LibVNCClient), which in VirtualBox, 10 vulnerabilities were identified.
5 vulnerabilities (, , , , ) are caused by buffer overflows and may potentially lead to code execution. 3 vulnerabilities can lead to information leakage, and 2 to denial of service.
All issues have already been resolved by the developers, but the changes are only in the master branch.
In (the cross-platform deprecated branch was tested, as the current version 2.x is released only for Windows), 4 vulnerabilities were found. Three issues ( CVE-2019-15679, , CVE-2019-15680aware of the issues last year, the vulnerabilities remain unpatched. In the cross-platform package
TurboVNC CVE-2019-15683on August 23rd Pavel Cheremushkin from Kaspersky Lab analyzed various implementations of the system. .
Source: opennet.ru
