CVE-2026-42859 | any1 neatvnc up to 0.9.5 src/auth/rsa-aes.c rsa_aes_send_challenge buffer overflow (GHSA-567c-gpv8-qh9h)
A vulnerability described as critical has been identified in any1 neatvnc up to 0.9.5. This issue affects the function rsa_aes_send_challenge of the file src/auth/rsa-aes.c. Such manipulation leads to buffer overflow.
This vulnerability is documented as CVE-2026-42859. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is recommended.