First published: Wed Jan 30 2019(Updated: )
Last updated 24 July 2024
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/libvncserver | 0.9.13+dfsg-2+deb11u1 0.9.14+dfsg-1 | |
LibVNCServer | <0.9.12 | |
Ubuntu | =14.04 | |
Ubuntu | =16.04 | |
Ubuntu | =16.04 | |
Ubuntu | =18.04 | |
Ubuntu | =18.10 | |
Debian | =8.0 | |
Debian | =9.0 | |
All of | ||
Siemens Simatic ITC1500 | >=3.0.0.0<3.2.1.0 | |
Siemens SIMATIC ITC1500 Firmware | ||
All of | ||
Siemens Simatic ITC1500 Pro | >=3.0.0.0<3.2.1.0 | |
Siemens Simatic ITC1500 Pro | ||
All of | ||
Siemens Simatic ITC1900 Pro | >=3.0.0.0<3.2.1.0 | |
Siemens Simatic ITC1900 Pro | ||
All of | ||
Siemens Simatic ITC1900 Pro | >=3.0.0.0<3.2.1.0 | |
Siemens Simatic ITC1900 Pro Firmware | ||
All of | ||
Siemens SIMATIC ITC2200 Firmware | >=3.0.0.0<3.2.1.0 | |
Siemens Simatic ITC2200 Pro | ||
All of | ||
Siemens Simatic ITC2200 Pro | >=3.0.0.0<3.2.1.0 | |
Siemens SIMATIC ITC2200 Pro Firmware | ||
Siemens Simatic ITC1500 | >=3.0.0.0<3.2.1.0 | |
Siemens SIMATIC ITC1500 Firmware | ||
Siemens Simatic ITC1500 Pro | >=3.0.0.0<3.2.1.0 | |
Siemens Simatic ITC1500 Pro | ||
Siemens Simatic ITC1900 Pro | >=3.0.0.0<3.2.1.0 | |
Siemens Simatic ITC1900 Pro | ||
Siemens Simatic ITC1900 Pro | >=3.0.0.0<3.2.1.0 | |
Siemens Simatic ITC1900 Pro Firmware | ||
Siemens SIMATIC ITC2200 Firmware | >=3.0.0.0<3.2.1.0 | |
Siemens Simatic ITC2200 Pro | ||
Siemens Simatic ITC2200 Pro | >=3.0.0.0<3.2.1.0 | |
Siemens SIMATIC ITC2200 Pro Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-20750 is critical with a CVSS score of 9.8.
CVE-2018-20750 affects LibVNC through version 0.9.12.
CVE-2018-20750 is a heap out-of-bounds write vulnerability in libvncserver/rfbserver.c in LibVNC.
The following software versions are affected by CVE-2018-20750: italc 1:3.0.3+dfsg1-3ubuntu0.1, italc 1:3.0.3+dfsg1-1+ / 1:2.0.2+dfsg1-2+, italc 1:2.0.2+dfsg1-4ubuntu0.1, libvncserver 0.9.11+dfsg-1ubuntu1.1, libvncserver 0.9.11+dfsg-1.1ubuntu0.1, libvncserver 0.9.9+dfsg-1ubuntu1.4, libvncserver 0.9.11+dfsg-1.3, libvncserver 0.9.10+dfsg-3ubuntu0.16.04.3, libvncserver 0.9.11+dfsg-1.3+deb10u4 / 0.9.11+dfsg-1.3+deb10u5 / 0.9.13+dfsg-2+deb11u1 / 0.9.14+dfsg-1.
To fix the CVE-2018-20750 vulnerability, update to the following versions: italc 1:3.0.3+dfsg1-3ubuntu0.1, italc 1:3.0.3+dfsg1-1+ / 1:2.0.2+dfsg1-2+, italc 1:2.0.2+dfsg1-4ubuntu0.1, libvncserver 0.9.11+dfsg-1ubuntu1.1, libvncserver 0.9.11+dfsg-1.1ubuntu0.1, libvncserver 0.9.9+dfsg-1ubuntu1.4, libvncserver 0.9.11+dfsg-1.3, libvncserver 0.9.10+dfsg-3ubuntu0.16.04.3, libvncserver 0.9.11+dfsg-1.3+deb10u4 / 0.9.11+dfsg-1.3+deb10u5 / 0.9.13+dfsg-2+deb11u1 / 0.9.14+dfsg-1.