CVE-2008-5660
Publication date 17 December 2008
Last updated 24 July 2024
Ubuntu priority
Format string vulnerability in the vinagre_utils_show_error function (src/vinagre-utils.c) in Vinagre 0.5.x before 0.5.2 and 2.x before 2.24.2 might allow remote attackers to execute arbitrary code via format string specifiers in a crafted URI or VNC server response.
Status
Package | Ubuntu Release | Status |
---|---|---|
vinagre | 8.10 intrepid |
Fixed 2.24.1-0ubuntu1.1
|
8.04 LTS hardy |
Fixed 0.5.1-0ubuntu1.1
|
|
7.10 gutsy | Not in release | |
6.06 LTS dapper | Not in release |