CVE-2008-5660

Publication date 17 December 2008

Last updated 24 July 2024


Ubuntu priority

Format string vulnerability in the vinagre_utils_show_error function (src/vinagre-utils.c) in Vinagre 0.5.x before 0.5.2 and 2.x before 2.24.2 might allow remote attackers to execute arbitrary code via format string specifiers in a crafted URI or VNC server response.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
vinagre 8.10 intrepid
Fixed 2.24.1-0ubuntu1.1
8.04 LTS hardy
Fixed 0.5.1-0ubuntu1.1
7.10 gutsy Not in release
6.06 LTS dapper Not in release