CVE-2026-107613: fallo de gravedad media en GlavSoft TightVNC
NULL pointer dereference in TightVNC Server Win8ScreenDriver after failed DXGI re-initialization
Publicada el
10Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackcvss 5.9
probabilidad de explotación
—
explotación observada
noninguna fuente lo reporta
A NULL pointer dereference vulnerability in the Win8ScreenDriver component of GlavSoft TightVNC Server for Windows before 2.8.88 allows an attacker to crash the server, causing a denial of service. When re-initialization of the DXGI Desktop Duplication driver fails in applyNewScreenProperties() (for example after a GPU reset, display hot-plug or session change), m_drvImpl is left NULL and is subsequently dereferenced without a check by executeDetection(), getScreenBuffer(), grabFb(), getScreenPropertiesChanged() and getCursorPosition().
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Productos afectados
GlavSoft · TightVNCCVEs relacionadas — GlavSoft TightVNC
En el mismo producto, de las más peligrosas a las menos.
CVE-2026-107615HIGHDLL search order hijacking via screenhooks libraries in TightVNC ServerEPSS —CVE-2026-107614MEDIUMInteger underflow in TightVNC Server cursor shape trimming leads to out-of-bounds readEPSS —CVE-2026-107612HIGHWorld-accessible IPC shared memory with predictable name in TightVNC ServerEPSS —CVE-2026-107611HIGHOut-of-bounds read in TightVNC Viewer ZRLE palette decodingEPSS —