TEMP-0000000-70147B

NameTEMP-0000000-70147B
DescriptionMemory corruption
SourceAutomatically generated temporary name. Not for external reference.

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
libvncserver (PTS)wheezy0.9.9+dfsg-1+deb7u1fixed
wheezy (security)0.9.9+dfsg-1+deb7u2fixed
jessie (security), jessie0.9.9+dfsg2-6.1+deb8u2fixed
buster, sid, stretch0.9.11+dfsg-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
libvncserversource(unstable)0.9.8-1
libvncserversourcesqueeze0.9.7-2+deb6u2

Notes

workaround entry for DLA-380-1 until/if CVE assigned
https://github.com/LibVNC/libvncserver/commit/804335f9d296440bb708ca844f5d89b58b50b0c6
CVE Request: http://www.openwall.com/lists/oss-security/2015/09/03/8
https://bugzilla.redhat.com/show_bug.cgi?id=706087#c1 notes that the fix breaks ABI

Search for package or bug name: Reporting problems