Use-after-free in LibVNCServer - CVE-2018-15126
Published: January 14, 2019 / Updated: January 22, 2019
LibVNCServer
Detailed vulnerability description
The vulnerability allows a remote attacker to compromise vulnerable system.
The vulnerability exists due to a heap use-after-free error in server code of file transfer extension. A remote attacker can trigger memory corruption and execute arbitrary code with elevated privileges.
Successful exploitation of the vulnerability may allow an attacker to compromise vulnerable system.