alpine · CVE-2018-20748

Quick triage

Priority: critical Published: Updated:

View at Official alpine advisory, NVD, CVE.org · CVE detail

Freshness: no update timestamp found; verify against the upstream OS advisory manually.

Tracker summary

CVE-2018-20748: 1 source package rows (libvncserver); 4 state rows across 2 repos (3.22-community, edge-community); fixed 0, open 4.

Description:

LibVNC before 0.9.12 contains multiple heap out-of-bounds write vulnerabilities in libvncclient/rfbproto.c. The fix for CVE-2018-20019 was incomplete.

cvelogic Threat Intelligence