Vulnerabilities > Apache > Guacamole > 1.5.0

DATE CVE VULNERABILITY TITLE RISK
2023-12-19 CVE-2023-43826 Integer Overflow or Wraparound vulnerability in Apache Guacamole
Apache Guacamole 1.5.3 and older do not consistently ensure that values received from a VNC server will not result in integer overflow.
network
low complexity
apache CWE-190
8.8
2023-06-07 CVE-2023-30575 Incorrect Calculation of Buffer Size vulnerability in Apache Guacamole
Apache Guacamole 1.5.1 and older may incorrectly calculate the lengths of instruction elements sent during the Guacamole protocol handshake, potentially allowing an attacker to inject Guacamole instructions during the handshake through specially-crafted data.
network
low complexity
apache CWE-131
7.5
2023-06-07 CVE-2023-30576 Use After Free vulnerability in Apache Guacamole
Apache Guacamole 0.9.10 through 1.5.1 may continue to reference a freed RDP audio input buffer.
network
high complexity
apache CWE-416
8.1