Known vulnerabilities in libvncserver (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:libvncserver_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 12
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting libvncserver (Red Hat package) libvncserver (Red Hat package) is affected by 12 known vulnerabilities: 2 critical, 3 high, 5 medium, 2 low Critical High Medium Low

Vulnerabilities (12)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU48699 - Divide By Zero
CVE-2020-25708
CWE-369 Medium
No
No
0.9.11-17.el8 27.11.2020 SB2020112719
SB2020112928
SB2021052205
and 1 more
#VU30157 - Out-of-bounds write
CVE-2017-18922
CWE-787 High
No
No
0.9.9-14.el7_8.1, 0.9.11-9.el8_0.3, 0.9.11-9.el8_1.3, 0.9.11-15.el8_2.1 30.06.2020 SB2020071704
SB2020071801
SB2020071807
and 11 more
#VU29384 - Missing release of memory after effective lifetime
CVE-2018-21247
CWE-401 Medium
No
No
0.9.11-17.el8 30.06.2020 SB2020063001
SB2020071807
SB2020072117
and 5 more
#VU29382 - NULL Pointer Dereference
CVE-2020-14397
CWE-476 Medium
No
No
0.9.11-17.el8 30.06.2020 SB2020063001
SB2020071807
SB2020072117
and 5 more
#VU29374 - Allocation of Resources Without Limits or Throttling
CVE-2020-14405
CWE-770 Medium
No
No
0.9.11-17.el8 30.06.2020 SB2020063001
SB2020061410
SB2021052205
and 2 more
#VU29373 - Memory corruption
CVE-2019-20839
CWE-119 Medium
No
No
0.9.11-17.el8 30.06.2020 SB2020063001
SB2020071807
SB2020072117
and 7 more
#VU26343 - Heap-based Buffer Overflow
CVE-2019-15690
CWE-122 High
No
No
0.9.9-14.el7_7, 0.9.11-9.el8_0.2, 0.9.11-9.el8_1.2 24.03.2020 SB2020032410
SB2020032524
SB2020032610
and 5 more
#VU18678 - Permissions, Privileges, and Access Controls
CVE-2019-12447
CWE-264 Critical
No
No
0.9.11-14.el8 05.06.2019 SB2019070801
SB2019070802
SB2020042843
and 3 more
#VU18677 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2019-12448
CWE-362 High
No
No
0.9.11-14.el8 05.06.2019 SB2019070801
SB2019070802
SB2020042843
and 3 more
#VU18676 - Permissions, Privileges, and Access Controls
CVE-2019-12449
CWE-264 Critical
No
No
0.9.11-14.el8 05.06.2019 SB2019070801
SB2019070802
SB2020042843
and 3 more
#VU17666 - Permissions, Privileges, and Access Controls
CVE-2019-3825
CWE-264 Low
No
No
0.9.11-14.el8 14.02.2019 SB2019021402
SB2019030810
SB2019030304
and 4 more
#VU16692 - Stack-based buffer overflow
CVE-2018-20337
CWE-121 Low
No
No
0.9.11-14.el8 25.12.2018 SB2018122504
SB2019012912
SB2019052213
and 2 more