Known vulnerabilities in libvncserver (Debian package)

Vendor: Debian
Software CPE: cpe:2.3:o:debian:libvncserver_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 9
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting libvncserver (Debian package) libvncserver (Debian package) is affected by 9 known vulnerabilities: 5 high, 4 low Critical High Medium Low

Vulnerabilities (9)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU17129 - Missing release of memory after effective lifetime
CVE-2018-20022
CWE-401 Low
No
No
0.9.9+dfsg2-6.1+deb8u5, 0.9.11+dfsg-1.3~deb9u1 22.01.2019 SB2018121911
SB2019011812
SB2019020408
and 2 more
#VU17128 - Missing release of memory after effective lifetime
CVE-2018-20023
CWE-401 Low
No
No
0.9.9+dfsg2-6.1+deb8u5, 0.9.11+dfsg-1.3~deb9u1 22.01.2019 SB2018121911
SB2019011812
SB2019020408
and 1 more
#VU17127 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2018-20021
CWE-835 Low
No
No
0.9.9+dfsg2-6.1+deb8u5, 0.9.11+dfsg-1.3~deb9u1 22.01.2019 SB2018121911
SB2019011812
SB2019020408
and 2 more
#VU17126 - Use After Free
CVE-2018-6307
CWE-416 High
No
No
0.9.9+dfsg2-6.1+deb8u5, 0.9.11+dfsg-1.3~deb9u1 22.01.2019 SB2018121911
SB2019011812
SB2019020408
#VU17125 - NULL Pointer Dereference
CVE-2018-20024
CWE-476 Low
No
No
0.9.9+dfsg2-6.1+deb8u5, 0.9.11+dfsg-1.3~deb9u1 22.01.2019 SB2018121911
SB2019011812
SB2019020408
and 2 more
#VU17124 - Out-of-bounds write
CVE-2018-20020
CWE-787 High
No
No
0.9.9+dfsg2-6.1+deb8u5, 0.9.11+dfsg-1.3~deb9u1 22.01.2019 SB2018121911
SB2019011812
SB2019020408
and 2 more
#VU17123 - Out-of-bounds write
CVE-2018-20019
CWE-787 High
No
No
0.9.9+dfsg2-6.1+deb8u5, 0.9.11+dfsg-1.3~deb9u1 22.01.2019 SB2018121911
SB2019011812
SB2019020408
and 2 more
#VU17122 - Out-of-bounds write
CVE-2018-15127
CWE-787 High
No
No
0.9.9+dfsg2-6.1+deb8u5, 0.9.11+dfsg-1.3~deb9u1 22.01.2019 SB2018121911
SB2019011812
SB2019020408
and 2 more
#VU16962 - Use After Free
CVE-2018-15126
CWE-416 High
No
No
0.9.9+dfsg2-6.1+deb8u5, 0.9.11+dfsg-1.3~deb9u1 14.01.2019 SB2018121911
SB2019011812
SB2019020408