Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-20019

Опубликовано: 19 дек. 2018
Источник: redhat
CVSS3: 8.8
EPSS Низкий

Описание

LibVNC before commit a83439b9fbe0f03c48eb94ed05729cb016f8b72f contains multiple heap out-of-bound write vulnerabilities in VNC client code that can result remote code execution

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6libvncserverWill not fix
Red Hat Enterprise Linux 7libvncserverAffected
Red Hat Enterprise Linux 8libvncserverAffected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-416
https://bugzilla.redhat.com/show_bug.cgi?id=1661114libvncserver: Multiple heap out-of-bound writes in VNC client code

EPSS

Процентиль: 95%
0.09468
Низкий

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 7 лет назад

LibVNC before commit a83439b9fbe0f03c48eb94ed05729cb016f8b72f contains multiple heap out-of-bound write vulnerabilities in VNC client code that can result remote code execution

CVSS3: 9.8
nvd
больше 7 лет назад

LibVNC before commit a83439b9fbe0f03c48eb94ed05729cb016f8b72f contains multiple heap out-of-bound write vulnerabilities in VNC client code that can result remote code execution

CVSS3: 9.8
debian
больше 7 лет назад

LibVNC before commit a83439b9fbe0f03c48eb94ed05729cb016f8b72f contains ...

CVSS3: 9.8
github
больше 4 лет назад

LibVNC before commit a83439b9fbe0f03c48eb94ed05729cb016f8b72f contains multiple heap out-of-bound write vulnerabilities in VNC client code that can result remote code execution

CVSS3: 9.8
fstec
около 8 лет назад

Уязвимость библиотеки LibVNC, связанная со считыванием данных за пределами заданного буфера, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 95%
0.09468
Низкий

8.8 High

CVSS3