← Back to CVE List

CVE-2017-18922

Published: 2020-06-30T11:15Z
Last Modified: 2024-11-21T03:21Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
It was discovered that websockets.c in LibVNCServer prior to 0.9.12 did not properly decode certain WebSocket frames. A malicious attacker could exploit this by sending specially crafted WebSocket frames to a server, causing a heap-based buffer overflow. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt