Libvncserver Project
Libvncserver Project Libvncserver: vulnerabilidades y CVE
Libvncserver Project Libvncserver tiene 12 vulnerabilidades publicadas, 2 de ellas en los últimos 12 meses. 4 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE12
Últimos 12 meses2
Críticas4
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-32854 | Media (6.3) | 5.3% | — | 24 mar 2026 | LibVNCServer versions 0.9.15 and prior (fixed in commit dc78dee) contain null pointer dereference vulnerabilities in the HTTP proxy handlers within httpProcessInput() in httpd.c that allow remote attackers to cause a… |
| CVE-2026-32853 | Media (6.9) | 0.44% | — | 24 mar 2026 | LibVNCServer versions 0.9.15 and prior (fixed in commit 009008e) contain a heap out-of-bounds read vulnerability in the UltraZip encoding handler that allows a malicious VNC server to cause information disclosure or… |
| CVE-2020-29260 | Alta (7.5) | 1.1% | — | 2 sept 2022 | libvncclient v0.9.13 was discovered to contain a memory leak via the function rfbClientCleanup(). |
| CVE-2020-25708 | Alta (7.5) | 1.6% | — | 27 nov 2020 | A divide by zero issue was found to occur in libvncserver-0.9.12. A malicious client could use this flaw to send a specially crafted message that, when processed by the VNC server, would lead to a floating point… |
| CVE-2017-18922 | Crítica (9.8) | 2.3% | — | 30 jun 2020 | It was discovered that websockets.c in LibVNCServer prior to 0.9.12 did not properly decode certain WebSocket frames. A malicious attacker could exploit this by sending specially crafted WebSocket frames to a server,… |
| CVE-2020-14401 | Media (6.5) | 2.5% | — | 17 jun 2020 | An issue was discovered in LibVNCServer before 0.9.13. libvncserver/scale.c has a pixel_value integer overflow. |
| CVE-2020-14400 | Alta (7.5) | 2.8% | — | 17 jun 2020 | An issue was discovered in LibVNCServer before 0.9.13. Byte-aligned data is accessed through uint16_t pointers in libvncserver/translate.c. NOTE: Third parties do not consider this to be a vulnerability as there is no… |
| CVE-2020-14399 | Alta (7.5) | 2.8% | — | 17 jun 2020 | An issue was discovered in LibVNCServer before 0.9.13. Byte-aligned data is accessed through uint32_t pointers in libvncclient/rfbproto.c. NOTE: there is reportedly "no trust boundary crossed. |
| CVE-2010-5304 | Alta (7.5) | 3.1% | — | 5 feb 2020 | A NULL pointer dereference flaw was found in the way LibVNCServer before 0.9.9 handled certain ClientCutText message. A remote attacker could use this flaw to crash the VNC server by sending a specially crafted… |
| CVE-2018-7225 | Crítica (9.8) | 6.1% | — | 19 feb 2018 | An issue was discovered in LibVNCServer through 0.9.11. rfbProcessClientNormalMessage() in rfbserver.c does not sanitize msg.cct.length, leading to access to uninitialized and potentially sensitive data or possibly… |
| CVE-2016-9942 | Crítica (9.8) | 3.7% | — | 31 dic 2016 | Heap-based buffer overflow in ultra.c in LibVNCClient in LibVNCServer before 0.9.11 allows remote servers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted… |
| CVE-2016-9941 | Crítica (9.8) | 3.7% | — | 31 dic 2016 | Heap-based buffer overflow in rfbproto.c in LibVNCClient in LibVNCServer before 0.9.11 allows remote servers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted… |