CVE-2018-20023
Last modified
CVE-2018-20023 is a vulnerability of currently unknown severity. LibVNC before 8b06f835e259652b0ff026898014fc7297ade858 contains CWE-665: Improper Initialization vulnerability in VNC Repeater client code that allows attacker to read stack memory and can be abuse for information disclosure. Combined with another vulnerability, it can be used to leak stack memory layout and in bypassing ASLR. EPSS estimates a 2.50% chance of exploitation in the next 30 days.
Description
LibVNC before 8b06f835e259652b0ff026898014fc7297ade858 contains CWE-665: Improper Initialization vulnerability in VNC Repeater client code that allows attacker to read stack memory and can be abuse for information disclosure. Combined with another vulnerability, it can be used to leak stack memory layout and in bypassing ASLR
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Libvnc Project | Libvncserver | < 0.9.12 |
| Debian | Debian Linux | 8.0 |
| Debian | Debian Linux | 9.0 |
| Canonical | Ubuntu Linux | 14.04 |
| Canonical | Ubuntu Linux | 16.04 |
| Canonical | Ubuntu Linux | 18.04 |
| Canonical | Ubuntu Linux | 18.10 |
References
- https://lists.debian.org/debian-lts-announce/2018/12/msg00017.htmlMailing List, Third Party Advisory
- https://usn.ubuntu.com/3877-1/Third Party Advisory
- https://www.debian.org/security/2019/dsa-4383Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2018/12/msg00017.htmlMailing List, Third Party Advisory
- https://usn.ubuntu.com/3877-1/Third Party Advisory
- https://www.debian.org/security/2019/dsa-4383Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-20023?
How severe is CVE-2018-20023?
How do I fix CVE-2018-20023?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2018
- CVE-2018-20017SEMCMS 3.5 has XSS via the first text box to the SEMCMS_Main…
- CVE-2018-20018S-CMS V3.0 has SQL injection via the S_id parameter, as demo…
- CVE-2018-20019LibVNC before commit a83439b9fbe0f03c48eb94ed05729cb016f8b72…9.8
- CVE-2018-20020LibVNC before commit 7b1ef0ffc4815cab9a96c7278394152bdc89dc4…
- CVE-2018-20021LibVNC before commit c3115350eb8bb635d0fdb4dbbb0d0541f38ed19…
- CVE-2018-20022LibVNC before 2f5b2ad1c6c99b1ac6482c95844a84d66bb52838 conta…
- CVE-2018-20024LibVNC before commit 4a21bbd097ef7c44bb000c3bd0907f96a10e4ce…
- CVE-2018-20025Use of Insufficiently Random Values exists in CODESYS V3 pro…
- CVE-2018-20026Improper Communication Address Filtering exists in CODESYS V…7.5
- CVE-2018-20027The yaml_parse.load method in Pylearn2 allows code injection…
- CVE-2018-20028Contao 3.x before 3.5.37, 4.4.x before 4.4.31 and 4.6.x befo…
- CVE-2018-20029The nxfs.sys driver in the DokanFS library 0.6.0 in NoMachin…5.5
Are you affected by CVE-2018-20023?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
