Logo
vulnerabilityCVE-2020-29074
Name
CVE-2020-29074
Source
NVD ( link)Debian ( link)
Description
scan.c in x11vnc 0.9.16 uses IPC_CREAT|0777 in shmget calls, which allows access by actors other than the current user.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
x11vnc
Patched

Vulnerability Ratings#


8.8
CVSSv31
6.5
CVSSv2

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
0.9.16
Patched
yocto
kirkstone
0.9.16+gitX
Not Affected
yocto
master
0.9.16+git
Not Affected
yocto
scarthgap
0.9.16+git
Not Affected

Resolved with patches#


x11vnc (buildroot:2025.02.x)

#
Title
Author
Resolve
1
scan: limit access to shared memory segments to current user
=?UTF-8?q?Gu=C3=A9nal=20DAVALAN?= <guenal.davalan@uca.fr>
CVE-2020-29074

x11vnc (buildroot:master)

#
Title
Author
Resolve
1
scan: limit access to shared memory segments to current user
=?UTF-8?q?Gu=C3=A9nal=20DAVALAN?= <guenal.davalan@uca.fr>
CVE-2020-29074