Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-20020

Опубликовано: 19 дек. 2018
Источник: redhat
CVSS3: 8.8
EPSS Низкий

Описание

LibVNC before commit 7b1ef0ffc4815cab9a96c7278394152bdc89dc4d contains heap out-of-bound write vulnerability inside structure in VNC client code that can result remote code execution

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6libvncserverWill not fix
Red Hat Enterprise Linux 7libvncserverWill not fix
Red Hat Enterprise Linux 8libvncserverWill not fix

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-416
https://bugzilla.redhat.com/show_bug.cgi?id=1661117libvncserver: Heap out-of-bound write inside structure in VNC client code allows for potential code execution

EPSS

Процентиль: 95%
0.08267
Низкий

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 7 лет назад

LibVNC before commit 7b1ef0ffc4815cab9a96c7278394152bdc89dc4d contains heap out-of-bound write vulnerability inside structure in VNC client code that can result remote code execution

CVSS3: 9.8
nvd
больше 7 лет назад

LibVNC before commit 7b1ef0ffc4815cab9a96c7278394152bdc89dc4d contains heap out-of-bound write vulnerability inside structure in VNC client code that can result remote code execution

CVSS3: 9.8
debian
больше 7 лет назад

LibVNC before commit 7b1ef0ffc4815cab9a96c7278394152bdc89dc4d contains ...

CVSS3: 9.8
github
больше 4 лет назад

LibVNC before commit 7b1ef0ffc4815cab9a96c7278394152bdc89dc4d contains heap out-of-bound write vulnerability inside structure in VNC client code that can result remote code execution

CVSS3: 9.8
fstec
около 8 лет назад

Уязвимость библиотеки LibVNC, связанная со считыванием данных за пределами заданного буфера, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 95%
0.08267
Низкий

8.8 High

CVSS3