CVE-2019-15693: Tigervnc
High severity, CVSS 7.2. EPSS: 4.3% chance of exploitation in the next 30 days.
TigerVNC version prior to 1.10.1 is vulnerable to heap buffer overflow, which occurs in TightDecoder::FilterGradient. Exploitation of this vulnerability could potentially result into remote code execution. This attack appear to be exploitable via network connectivity.
Affected products
- Tigervnc Tigervnc: before 1.10.1 (fixed in 1.10.1)
Published 2019-12-26. Last modified 2026-06-17.