Critical severity9.8OSV Advisory· Published Feb 19, 2018· Updated Jun 17, 2026
CVE-2018-7226
CVE-2018-7226
Description
An issue was discovered in vcSetXCutTextProc() in VNConsole.c in LinuxVNC and VNCommand from the LibVNC/vncterm distribution through 0.9.10. Missing sanitization of the client-specified message length may cause integer overflow or possibly have unspecified other impact via a specially crafted VNC packet.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
30.1, 0.9.10+ 1 more
- (no CPE)range: 0.1, 0.9.10
- (no CPE)range: <=0.9.10
Patches
Vulnerability mechanics
References
3- github.com/LibVNC/vncterm/issues/6nvdPatchThird Party Advisory
- openwall.com/lists/oss-security/2018/02/18/2nvdMailing List
- security.gentoo.org/glsa/201908-05nvd
News mentions
0No linked articles in our index yet.