LibVNC before commit a83439b9fbe0f03c48eb94ed05729cb016f8b72f contains multiple heap out-of-bound write vulnerabilities in VNC client code that can result remote code execution
CVSS Details
- CVSS 3.1 Base Score: 9.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | debian-upgrade-libvncserver | Feb 4, 2019 | Dec 19, 2018 | |
| Gentoo Linux | gentoo-linux-upgrade-net-libs-libvncserver | Aug 13, 2019 | Dec 19, 2018 | |
| Huawei Euleros 2_0_sp2 | huawei-euleros-2_0_sp2-upgrade-libvncserver | Feb 22, 2019 | Dec 19, 2018 | |
| Huawei Euleros 2_0_sp3 | huawei-euleros-2_0_sp3-upgrade-libvncserver | Mar 27, 2019 | Dec 19, 2018 | |
| Huawei Euleros 2_0_sp5 | huawei-euleros-2_0_sp5-upgrade-libvncserver | Feb 15, 2019 | Dec 19, 2018 | |
| Redhat_linux | — | no-fix-redhat-rpm-package | Jul 9, 2025 | Dec 19, 2018 |
| Suse | — | suse-upgrade-libvncclient0suse-upgrade-libvncserversuse-upgrade-libvncserver-develsuse-upgrade-libvncserver0 | Jan 11, 2019 | Dec 19, 2018 |
| Ubuntu | ubuntu-upgrade-italc-clientubuntu-upgrade-italc-masterubuntu-upgrade-libitalccoreubuntu-upgrade-libvncclient1ubuntu-upgrade-libvncserver0ubuntu-upgrade-libvncserver1 | Feb 6, 2019 | Dec 19, 2018 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub