Oval Definition:oval:com.ubuntu.trusty:def:20187225000
Revision Date:2018-02-19Version:1
Title:CVE-2018-7225 on Ubuntu 14.04 LTS (trusty) - medium.
Description:An issue was discovered in LibVNCServer through 0.9.11. rfbProcessClientNormalMessage() in rfbserver.c does not sanitize msg.cct.length, leading to access to uninitialized and potentially sensitive data or possibly unspecified other impact (e.g., an integer overflow) via specially crafted VNC packets.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2018-7225
Platform(s):Ubuntu 14.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 14.04 LTS (trusty) is installed.
  • AND The 'libvncserver' package in trusty was vulnerable but has been fixed (note: '0.9.9+dfsg-1ubuntu1.3').
  • BACK