The vendor explicitly identifies these products as affected by this CVE.
- SIMATIC ITC1500 V3
- SIMATIC ITC1500 V3 PRO
- SIMATIC ITC1900 V3
- SIMATIC ITC1900 V3 PRO
- SIMATIC ITC2200 V3
- SIMATIC ITC2200 V3 PRO
- Summary
- An issue was discovered in LibVNCServer before 0.9.13. libvncclient/tls_openssl.c has a NULL pointer dereference.
- Remediation
- Update to V3.2.1.0 or later version
