Vulnerability Details CVE-2019-8270
UltraVNC revision 1210 has out-of-bounds read vulnerability in VNC client code inside Ultra decoder, which results in a denial of service (DoS) condition. This attack appear to be exploitable via network connectivity. This vulnerability has been fixed in revision 1211.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 59.9%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2019-8270
-
cpe:2.3:a:uvnc:ultravnc:1.0.9.6.2
-
cpe:2.3:a:uvnc:ultravnc:1.1.8.9
-
cpe:2.3:a:uvnc:ultravnc:1.1.9.3
-
cpe:2.3:a:uvnc:ultravnc:1.1.9.6
-
cpe:2.3:a:uvnc:ultravnc:1.2.0.5
-
cpe:2.3:a:uvnc:ultravnc:1.2.0.9
-
cpe:2.3:a:uvnc:ultravnc:1.2.1.0
-
cpe:2.3:a:uvnc:ultravnc:1.2.1.2
-
cpe:2.3:a:uvnc:ultravnc:1.2.1.6
-
cpe:2.3:a:uvnc:ultravnc:1.2.1.7
-
cpe:2.3:a:uvnc:ultravnc:1.2.2.2