- 30 Jun, 2020 1 commit
-
-
Mike Gabriel authored
-
- 29 Jun, 2020 7 commits
-
-
Mike Gabriel authored
debian/patches: Add CVE-2020-14405.patch (CVE-2020-14405). libvncclient/rfbproto: limit max textchat size.
-
Mike Gabriel authored
debian/patches: Add CVE-2020-14402+14403,14404}.patch (CVE-2020-14402, CVE-2020-14403, CVE-2020-14404). libvncserver: encodings: prevent OOB accesses.
-
Mike Gabriel authored
debian/patches: Add CVE-2020-14401.patch (CVE-2020-14401). libvncserver: scale: cast to 64 bit before shifting.
-
Mike Gabriel authored
debian/patches: Add CVE-2020-14400.patch (CVE-2020-14400). libvncserver: fix pointer aliasing/alignment issue.
-
Mike Gabriel authored
debian/patches: Add CVE-2020-14399.patch (CVE-2020-14399). libvncclient: fix pointer aliasing/alignment issue.
-
Mike Gabriel authored
debian/patches: Add CVE-2020-14397.patch (CVE-2020-14397). libvncserver: add missing NULL pointer checks.
-
Mike Gabriel authored
debian/patches: Add CVE-2019-20839.patch (CVE-2019-20839). libvncclient: bail out if unix socket name would overflow..
-
- 31 Mar, 2020 5 commits
-
-
Utkarsh Gupta authored
libvncserver (0.9.9+dfsg2-6.1+deb8u7) jessie-security; urgency=high * Non-maintainer upload by the Debian LTS team. * Add patch to limit width/height input values to avoid a possible heap overflow. (Fixes: CVE-2019-15690) (Closes: #954163) -
Mike Gabriel authored
libvncserver (0.9.9+dfsg2-6.1+deb8u6) jessie-security; urgency=medium * Non-maintainer upload by the Debian LTS team. * CVE-2019-15681: rfbserver: don't leak stack memory to the remote. (Closes: #943793). -
Emilio Pozuelo Monfort authored
libvncserver (0.9.9+dfsg2-6.1+deb8u5) jessie-security; urgency=medium * Non-maintainer upload by the Debian LTS Team. * CVE-2018-20748: incomplete fix for CVE-2018-20019 oob heap writes. * CVE-2018-20749: incomplete fix for CVE-2018-15127 oob heap writes. * CVE-2018-20750: incomplete fix for CVE-2018-15127 oob heap writes. * CVE-2018-15126: heap use-after-free resulting in possible RCE. * debian/libvncserver0.symbols: update for the symbol changes in the CVE-2018-15126 patch, which split a function in two with new names. This is not really an ABI change as these symbols are private, i.e. not exported in any public headers, and only exported on the DSO because there's no filter applied. -
Abhijith PA authored
libvncserver (0.9.9+dfsg2-6.1+deb8u4) jessie-security; urgency=medium * Non-maintainer upload by the Debian LTS Team. * CVE-2018-15127: heap out-of-bound write vulnerability (Closes: #916941) * CVE-2018-20019: multiple heap out-of-bound write vulnerabilities * CVE-2018-20020: heap out-of-bound write vulnerability inside structure in VNC client code * CVE-2018-20021: CWE-835: Infinite loop vulnerability in VNC client code. * CVE-2018-20022: CWE-665: Improper Initialization vulnerability * CVE-2018-20023:Improper Initialization vulnerability in VNC Repeater client code * CVE-2018-20024: null pointer dereference that can result DoS * CVE-2018-6307: heap use-after-free vulnerability in server code of file transfer extension -
Markus Koschany authored
libvncserver (0.9.9+dfsg2-6.1+deb8u3) jessie-security; urgency=high * Non-maintainer upload. * Fix CVE-2018-7225: Uninitialized and potentially sensitive data could be accessed by remote attackers because the msg.cct.length in rfbserver.c was not sanitized. (Closes: #894045)
-
- 03 Jan, 2017 4 commits
-
-
Peter Spiess-Knafl authored
-
Peter Spiess-Knafl authored
-
Peter Spiess-Knafl authored
-
Peter Spiess-Knafl authored
-
- 27 May, 2015 5 commits
-
-
Peter Spiess-Knafl authored
-
Peter Spiess-Knafl authored
Upstream version 0.9.9+dfsg2
-
Peter Spiess-Knafl authored
-
Peter Spiess-Knafl authored
-
Peter Spiess-Knafl authored
-
- 26 May, 2015 2 commits
-
-
Peter Spiess-Knafl authored
-
Peter Spiess-Knafl authored
-
- 25 May, 2015 1 commit
-
-
Peter Spiess-Knafl authored
-
- 11 Feb, 2015 1 commit
-
-
Luca Falavigna authored
-
- 30 Jan, 2015 1 commit
-
-
Peter Spiess-Knafl authored
-
- 30 Nov, 2014 1 commit
-
-
- 12 Aug, 2014 3 commits
-
-
Luca Falavigna authored
-
Luca Falavigna authored
-
Luca Falavigna authored
-
- 10 Aug, 2014 6 commits
-
-
Luca Falavigna authored
-
Luca Falavigna authored
-
Luca Falavigna authored
-
Luca Falavigna authored
-
Luca Falavigna authored
-
Luca Falavigna authored
-
- 01 Aug, 2014 2 commits
-
-
Gianfranco Costamagna authored
-
Gianfranco Costamagna authored
-
- 01 Jul, 2014 1 commit
-
-
Luca Falavigna authored
-