LinuxQuestions.org
Help answer threads with 0 replies.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 05-16-2006, 06:17 PM   #1
Capt_Caveman
Senior Member
 
Registered: Mar 2003
Distribution: Fedora
Posts: 3,658

Rep: Reputation: 69
WARN: RealVNC Vulnerability


A vulnerability has been identified in RealVNC that allows a remote user to bypass authentication without providing a correct password. A working proof-of-concept has been released and exploits are actively circulating in the wild. This vulnerability only appears to affect RealVNC version 4.1.1 and not older versions or other VNC daemons such as Ultra or TightVNC.

http://www.intelliadmin.com/blog/200...alvnc-411.html
http://www.linuxsecurity.com/content/view/122774/65/
http://secunia.com/advisories/20107/
 
Old 05-16-2006, 06:24 PM   #2
gilead
Senior Member
 
Registered: Dec 2005
Location: Brisbane, Australia
Distribution: Slackware64 14.0
Posts: 4,141

Rep: Reputation: 168Reputation: 168
We use VNC here as part of the corporate standard operating environment. The solution here hasn't been to upgrade VNC (or block it across the network until it's patched) - instead, the sites describing the problem have been blocked at our proxy server so nobody can read about it.

Looks like I have to wait until I get home tonight to read about this...
 
Old 05-17-2006, 04:29 PM   #3
Capt_Caveman
Senior Member
 
Registered: Mar 2003
Distribution: Fedora
Posts: 3,658

Original Poster
Rep: Reputation: 69
Quote:
Originally Posted by gilead
We use VNC here as part of the corporate standard operating environment. The solution here hasn't been to upgrade VNC (or block it across the network until it's patched) - instead, the sites describing the problem have been blocked at our proxy server so nobody can read about it.
Ahh the ole' "Stick Head in Sand" approach to security. I don't think I'd really consider that a "solution" by any stretch of the word. Hopefully the can get a real solution/workaround soon.
 
Old 05-19-2006, 08:57 PM   #4
soulestream
Member
 
Registered: Nov 2005
Posts: 183

Rep: Reputation: 30
once again. thats why you use VPN -> vnc. RDP has a similar issue in which the encryption can be cracked on the fly.


Soule
 
Old 05-19-2006, 09:45 PM   #5
Capt_Caveman
Senior Member
 
Registered: Mar 2003
Distribution: Fedora
Posts: 3,658

Original Poster
Rep: Reputation: 69
Agreed. Or VNC over SSH.
 
Old 05-19-2006, 11:38 PM   #6
gilead
Senior Member
 
Registered: Dec 2005
Location: Brisbane, Australia
Distribution: Slackware64 14.0
Posts: 4,141

Rep: Reputation: 168Reputation: 168
The corporate response here hasn't been decided yet - or if it has, the staff haven't been told. I use VNC over SSH when connecting to the Linux boxes, but the Windows boxes are mostly workstations without SSH. Fortunately, none of them are visible outside the LAN.
 
Old 05-22-2006, 08:16 PM   #7
Capt_Caveman
Senior Member
 
Registered: Mar 2003
Distribution: Fedora
Posts: 3,658

Original Poster
Rep: Reputation: 69
That's good, because there has been huge amounts of scanning for VNC ports lately. They should get on the stick though, as the exploit is reportedly extremely easy to implement. Especially if you have untrusted or quasi-trusted users on the network.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
WARN: Critical Sendmail Vulnerability justanothersteve Linux - Security 10 05-09-2006 04:16 PM
WARN PHP Vulnerability Capt_Caveman Linux - Security 0 07-04-2005 04:38 PM
WARN: Samba Vulnerability Capt_Caveman Linux - Security 0 12-17-2004 10:59 PM
WARN: rsync Joey.Dale Linux - Security 1 10-12-2004 11:10 PM
WARN: OpenSSL NULL Pointer Assignment vulnerability unSpawn Linux - Security 1 03-18-2004 12:11 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 09:37 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration