CVE-2018-20547: Buffer Overflow
Published Dec 28, 2018
·Updated
Last updated 25 August 2025
Other sources
There is an illegal READ memory access at caca/dither.c (function getrgbadefault) in libcaca 0.99.beta19 for 24bpp data.
— Launchpad
Affected Software
12 affected componentsFixes available
Libcaca Project Libcaca=0.99-beta19
Canonical Ubuntu Linux=12.04
Canonical Ubuntu Linux=14.04
Canonical Ubuntu Linux=16.04
Canonical Ubuntu Linux=18.04
Canonical Ubuntu Linux=18.10
Debian Debian Linux=8.0
Fedoraproject Fedora=34
Fedoraproject Fedora=35
Fedoraproject Fedora=36
openSUSE Leap=15.0
debian/libcaca
0.99.beta19-2.20.99.beta19-2.2+deb11u10.99.beta20-30.99.beta20-50.99.beta20-6
Remediation
Patch Available
Event History
Dec 28, 2018
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Data Sourced
via NVD·04:29 PM
RemedyDescriptionSeverityWeaknessAffected Software
Feb 20, 2026
Data Sourced
via Ubuntu·07:06 PM
RemedyDescriptionSeverityAffected Software
Data Sourced
via Launchpad·07:06 PM
Description
Data Sourced
via Debian·07:07 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-20547?
CVE-2018-20547 is classified as a medium severity vulnerability due to an illegal READ memory access.
2
How do I fix CVE-2018-20547?
To fix CVE-2018-20547, update libcaca to version 0.99.beta20-5 or later.
3
Which versions of libcaca are affected by CVE-2018-20547?
CVE-2018-20547 affects libcaca versions 0.99.beta19 and earlier.
4
Which operating systems are impacted by CVE-2018-20547?
CVE-2018-20547 impacts various distributions including Debian, Ubuntu, and Fedora that use vulnerable libcaca versions.
5
Is there a workaround for CVE-2018-20547?
There are no specific workarounds for CVE-2018-20547; upgrading to a secure version is recommended.