CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
COMPLETE
AV:N/AC:L/Au:N/C:N/I:N/A:C
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
98.1%
It was discovered that LibVNCServer incorrectly handled certain operations.
A remote attacker able to connect to applications using LibVNCServer could
possibly use this issue to obtain sensitive information, cause a denial of
service, or execute arbitrary code.
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
Ubuntu | 18.10 | noarch | libvncclient1 | < 0.9.11+dfsg-1.1ubuntu0.1 | UNKNOWN |
Ubuntu | 18.10 | noarch | libvncclient1-dbg | < 0.9.11+dfsg-1.1ubuntu0.1 | UNKNOWN |
Ubuntu | 18.10 | noarch | libvncserver-config | < 0.9.11+dfsg-1.1ubuntu0.1 | UNKNOWN |
Ubuntu | 18.10 | noarch | libvncserver-dev | < 0.9.11+dfsg-1.1ubuntu0.1 | UNKNOWN |
Ubuntu | 18.10 | noarch | libvncserver1 | < 0.9.11+dfsg-1.1ubuntu0.1 | UNKNOWN |
Ubuntu | 18.10 | noarch | libvncserver1-dbg | < 0.9.11+dfsg-1.1ubuntu0.1 | UNKNOWN |
Ubuntu | 18.04 | noarch | libvncclient1 | < 0.9.11+dfsg-1ubuntu1.1 | UNKNOWN |
Ubuntu | 18.04 | noarch | libvncclient1-dbg | < 0.9.11+dfsg-1ubuntu1.1 | UNKNOWN |
Ubuntu | 18.04 | noarch | libvncserver-config | < 0.9.11+dfsg-1ubuntu1.1 | UNKNOWN |
Ubuntu | 18.04 | noarch | libvncserver-dev | < 0.9.11+dfsg-1ubuntu1.1 | UNKNOWN |
ubuntu.com/security/CVE-2018-15126
ubuntu.com/security/CVE-2018-15127
ubuntu.com/security/CVE-2018-20019
ubuntu.com/security/CVE-2018-20020
ubuntu.com/security/CVE-2018-20021
ubuntu.com/security/CVE-2018-20022
ubuntu.com/security/CVE-2018-20023
ubuntu.com/security/CVE-2018-20024
ubuntu.com/security/CVE-2018-20748
ubuntu.com/security/CVE-2018-20749
ubuntu.com/security/CVE-2018-20750
ubuntu.com/security/CVE-2018-6307
CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
COMPLETE
AV:N/AC:L/Au:N/C:N/I:N/A:C
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
98.1%