Mageia 2019-0037: libvncserver & x11vnc security update
Summary
A heap use-after-free vulnerability in the server code of the file
transfer extension, which can result in remote code execution. This
attack appears to be exploitable via network connectivity
(CVE-2018-6307).
A heap use-after-free vulnerability in the server code of the file
transfer extension, which can result in remote code execution. This
attack appears to be exploitable via network connectivity
(CVE-2018-15126).
A heap out-of-bound write vulnerability in the server code of the file
transfer extension, which can result in remote code execution. This
attack appears to be exploitable via network connectivity
(CVE-2018-15127).
Multiple heap out-of-bound write vulnerabilities in VNC client code,
which can result in remote code execution (CVE-2018-20019).
Heap out-of-bound write vulnerability in a structure in VNC client code,
which can result in remote code execution (CVE-2018-20020).
Infinite Loop vulnerability in VNC client code. The vulnerability could
allow an attacker to consum...
References
- https://bugs.mageia.org/show_bug.cgi?id=24177
- https://github.com/LibVNC/libvncserver/releases/tag/LibVNCServer-0.9.12
- https://github.com/LibVNC/x11vnc/releases/tag/0.9.15
- https://github.com/LibVNC/x11vnc/releases/tag/0.9.16
- https://lists.debian.org/debian-lts-announce/2018/12/msg00017.html
- - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-6307
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-15126
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-15127
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-20019
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-20020
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-20021
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-20022
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-20023
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-20024
Resolution
MGASA-2019-0037 - Updated libvncserver & x11vnc packages fix security vulnerabilities
SRPMS
- 6/core/libvncserver-0.9.12-1.mga6
- 6/core/x11vnc-0.9.16-1.mga6