Multiple VNC Clients Multiple Integer Overflow Vulnerabilities

An attacker may exploit these issues by enticing a victim into connecting to a malicious server.

Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.

The following proofs of concept are available:


 

Privacy Statement
Copyright 2010, SecurityFocus