Short Name |
VNC:ERR:SVR-CUT-OVERFLOW |
---|---|
Severity |
High |
Recommended |
No |
Category |
VNC |
Release Date |
2003/04/22 |
Update Number |
1213 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This protocol anomaly is a VNC server message with cut text that exceeds the user-defined maximum. The default cut text length is 4096; you can change this setting in the Sensor Settings Rulebase>Protocol Thresholds and Configuration>VNC>Cut text length.
Some VNC implementations may be vulnerable in how they process such unusual exception conditions, especially an Authentication Status message that is too long. The security flaws in these products may be exploited for denial of service or other attacks.