<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>The Bozteck Blog &#187; oveflow</title>
	<atom:link href="http://vncscan.com/blog/tag/oveflow/feed/" rel="self" type="application/rss+xml" />
	<link>http://vncscan.com/blog</link>
	<description>VNCScan Enterprise Network Manager (VENM)</description>
	<lastBuildDate>Tue, 24 Aug 2010 01:23:41 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>UltraVNC Viewer Vaulnerability</title>
		<link>http://vncscan.com/blog/2009/02/ultravnc-viewer-vaulnerability/</link>
		<comments>http://vncscan.com/blog/2009/02/ultravnc-viewer-vaulnerability/#comments</comments>
		<pubDate>Fri, 06 Feb 2009 03:06:00 +0000</pubDate>
		<dc:creator>Steve Bostedor</dc:creator>
				<category><![CDATA[Announcements]]></category>
		<category><![CDATA[buffer]]></category>
		<category><![CDATA[flaw]]></category>
		<category><![CDATA[oveflow]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[ultravnc]]></category>
		<category><![CDATA[vncviewer.exe]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://vncscan.com/blog/?p=39</guid>
		<description><![CDATA[Important Information
There has been a serious integer overflow vulnerability found in the UltraVNC viewer with versions 1.0.5.3 and earlier.  There is more information about this vulnerability at Core Security.
Notice that this is for the viewer only.  The server is not affected by this bug.
Solution
The easiest way to upgrade the viewer is to upgrade [...]]]></description>
			<content:encoded><![CDATA[<p><span style="font-weight: bold;">Important Information</span></p>
<p><span style="color: #ff0000;">There has been a serious integer overflow vulnerability found in the UltraVNC viewer with versions 1.0.5.3 and earlier</span>.  There is more information about this vulnerability at <a href="http://www.coresecurity.com/content/vnc-integer-overflows">Core Security</a>.</p>
<p>Notice that this is for the viewer only.  The server is not affected by this bug.</p>
<p><span style="font-weight: bold;">Solution</span></p>
<p>The easiest way to upgrade the viewer is to upgrade to the <a href="http://www.bozteck.com/vncscan/downloads.htm">latest release</a> of VENM Console.  This version uses the patched viewer and is safe.</p>
<p>Alternatively, you can manually update your vncviewer.exe by performing the following steps:</p>
<ol>
<li>Download the zipped viewer <a href="http://sc.uvnc.com/download/click.php?id=12">here</a></li>
<li>Unzip the vncviewer.exe into the following places:</li>
</ol>
<ul>
<li>&#8220;C:\Program Files\Bozteck\VNCScan Console .Net&#8221;</li>
<li>&#8220;C:\fastpush\vnc7\ultra&#8221;</li>
</ul>
<p>Thank You,</p>
<p>Steve Bostedor<br />
Bozteck VENM Support</p>
<p>http://www.vncscan.com</p>
]]></content:encoded>
			<wfw:commentRss>http://vncscan.com/blog/2009/02/ultravnc-viewer-vaulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
