Logo
vulnerabilityCVE-2020-15117
Name
CVE-2020-15117
Source
NVD ( link)Debian ( link)
Description
In Synergy before version 1.12.0, a Synergy server can be crashed by receiving a kMsgHelloBack packet with a client name length set to 0xffffffff (4294967295) if the servers memory is less than 4 GB. It was verified that this issue does not cause a crash through the exception handler if the available memory of the Server is more than 4GB.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
synergy
Patched

Vulnerability Ratings#


6.5
CVSSv31
6.5
CVSSv31
4
CVSSv2

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
2.0.12-beta
Not Affected
buildroot
master
2.0.12-beta
Not Affected
yocto
master
1.10.1+git
Patched
yocto
scarthgap
1.10.1+git
Patched

Resolved with patches#


synergy (yocto:kirkstone)

#
Title
Author
Resolve
1
Merge pull request from GHSA-chfm-333q-gfpp
Jnewbon <48688400+Jnewbon@users.noreply.github.com>
CVE-2020-15117

synergy (yocto:master)

#
Title
Author
Resolve
1
Merge pull request from GHSA-chfm-333q-gfpp
Jnewbon <48688400+Jnewbon@users.noreply.github.com>
CVE-2020-15117

synergy (yocto:scarthgap)

#
Title
Author
Resolve
1
Merge pull request from GHSA-chfm-333q-gfpp
Jnewbon <48688400+Jnewbon@users.noreply.github.com>
CVE-2020-15117