CVE-2018-15127
published 2018-12-19CVE-2018-15127: LibVNC before commit 502821828ed00b4a2c4bef90683d0fd88ce495de contains heap out-of-bound write vulnerability in server code of file transfer extension that can…
PriorityP262critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
15.09%
96.4th percentile
LibVNC before commit 502821828ed00b4a2c4bef90683d0fd88ce495de contains heap out-of-bound write vulnerability in server code of file transfer extension that can result remote code execution
Affected
29 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | libvncserver | < libvncserver 0.9.11+dfsg-1.2 (bookworm) | libvncserver 0.9.11+dfsg-1.2 (bookworm) |
| debian | libvncserver | < libvncserver 0.9.11+dfsg-1.3 (bookworm) | libvncserver 0.9.11+dfsg-1.3 (bookworm) |
| libvnc_project | libvncserver | < 0.9.12 | 0.9.12 |
| libvncserver_project | libvncserver | >= 0 < 0.9.11+dfsg-1.3 | 0.9.11+dfsg-1.3 |
| libvncserver_project | libvncserver | >= 0 < 0.9.11+dfsg-1.2 | 0.9.11+dfsg-1.2 |
| libvncserver_project | libvncserver | >= 0 < 0.9.11+dfsg-1.3 | 0.9.11+dfsg-1.3 |
| libvncserver_project | libvncserver | >= 0 < 0.9.11+dfsg-1.2 | 0.9.11+dfsg-1.2 |
| libvncserver_project | libvncserver | >= 0 < 0.9.11+dfsg-1.3 | 0.9.11+dfsg-1.3 |
| libvncserver_project | libvncserver | >= 0 < 0.9.11+dfsg-1.2 | 0.9.11+dfsg-1.2 |
| libvncserver_project | libvncserver | >= 0 < 0.9.11+dfsg-1.3 | 0.9.11+dfsg-1.3 |
| libvncserver_project | libvncserver | >= 0 < 0.9.11+dfsg-1.2 | 0.9.11+dfsg-1.2 |
| redhat | enterprise_linux_desktop | — | — |
| redhat | enterprise_linux_server | — | — |
| redhat | enterprise_linux_server_aus | — | — |
| redhat | enterprise_linux_server_eus | — | — |
| redhat | enterprise_linux_server_tus | — | — |
| redhat | enterprise_linux_workstation | — | — |
| siemens | simatic_itc1500_firmware | >= 3.0.0.0 < 3.2.1.0 | 3.2.1.0 |
| siemens | simatic_itc1500_pro_firmware | >= 3.0.0.0 < 3.2.1.0 | 3.2.1.0 |
Detection & IOCsextracted from sources · hover to see the quote
- →Vulnerable function is rfbProcessFileTransferReadBuffer() in libvncserver/rfbserver.c — monitor for heap out-of-bounds write activity triggered via the VNC file transfer extension on the server side. ↗
- →The vulnerability is exploitable remotely via the VNC file transfer extension; inspect VNC traffic for anomalous file transfer protocol messages that could trigger the heap write primitive. ↗
- ·The initial fix (commit 502821828ed00b4a2c4bef90683d0fd88ce495de) for CVE-2018-15127 was incomplete; follow-on CVEs (CVE-2018-20749, CVE-2018-20750) track the remaining exposure through LibVNC 0.9.12. Ensure patching covers all three CVEs. ↗
- ·Red Hat Enterprise Linux 6 is listed as 'Will not fix' for CVE-2018-15127; systems running RHEL 6 with libvncserver remain permanently exposed unless mitigated at the network/application layer. ↗
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
vendor_debian9.8CRITICAL
vendor_redhat9.8CRITICAL
vendor_ubuntu9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
iTALC vulnerabilities
vendor_ubuntu·2020-10-20·CVSS 7.5
CVE-2018-20749 [HIGH] iTALC vulnerabilities
Title: iTALC vulnerabilities
Summary: Several security issues were fixed in iTALC.
Nicolas Ruff discovered that iTALC had buffer overflows, divide-by-zero errors
and didn't check malloc return values. A remote attacker could use these issues
to cause a denial of service or possibly execute arbitrary code.
(CVE-2014-6051, CVE-2014-6052, CVE-2014-6053, CVE-2014-6054, CVE-2014-6055)
Josef Gajdusek discovered that iTALC had heap-based buffer overflow
vulnerabilities. A remote attacker could used these issues to cause a denial of
service or possibly execute arbitrary code. (CVE-2016-9941, CVE-2016-9942)
It was discovered that iTALC had an out-of-bounds write, multiple heap
out-of-bounds writes, an infinite loop, improper initializations, and null
pointer vulnerabilities. A remote attacker c
Ubuntu
iTALC vulnerabilities
vendor_ubuntu·2020-09-28·CVSS 9.8
CVE-2018-15127 [CRITICAL] iTALC vulnerabilities
Title: iTALC vulnerabilities
Summary: Several security issues were fixed in iTALC.
It was discovered that an information disclosure vulnerability existed in the
LibVNCServer vendored in iTALC when sending a ServerCutText message. An
attacker could possibly use this issue to expose sensitive information.
(CVE-2019-15681)
It was discovered that the LibVNCServer and LibVNCClient vendored in iTALC
incorrectly handled certain packet lengths. A remote attacker could possibly
use this issue to obtain sensitive information, cause a denial of service, or
execute arbitrary code.
(CVE-2018-15127 CVE-2018-20019, CVE-2018-20020, CVE-2018-20021, CVE-2018-20022,
CVE-2018-20023, CVE-2018-20024, CVE-2018-20748, CVE-2018-20749, CVE-2018-20750,
CVE-2018-7225, CVE-2019-15681)
Instructions: In general, a s
Ubuntu
LibVNCServer vulnerabilities
vendor_ubuntu·2019-01-31
CVE-2018-15126 LibVNCServer vulnerabilities
Title: LibVNCServer vulnerabilities
Summary: Several security issues were fixed in LibVNCServer.
It was discovered that LibVNCServer incorrectly handled certain operations.
A remote attacker able to connect to applications using LibVNCServer could
possibly use this issue to obtain sensitive information, cause a denial of
service, or execute arbitrary code.
Instructions: After a standard system update you need to restart LibVNCServer
applications to make all the necessary changes.
Red Hat
libvncserver: Heap out-of-bounds write in rfbserver.c in rfbProcessFileTransferReadBuffer() allows for potential code execution (Incomplete fix for CVE-2018-15127)
vendor_redhat·2019-01-06·CVSS 9.8
CVE-2018-20750 [CRITICAL] CWE-122 libvncserver: Heap out-of-bounds write in rfbserver.c in rfbProcessFileTransferReadBuffer() allows for potential code execution (Incomplete fix for CVE-2018-15127)
libvncserver: Heap out-of-bounds write in rfbserver.c in rfbProcessFileTransferReadBuffer() allows for potential code execution (Incomplete fix for CVE-2018-15127)
LibVNC through 0.9.12 contains a heap out-of-bounds write vulnerability in libvncserver/rfbserver.c. The fix for CVE-2018-15127 was incomplete.
A flaw was found in libvncserver. An incomplete fix for CVE-2018-15127 leaves open an out-of-bounds write vulnerability in code for the file transfer extension. This vulnerability can be remotely exploited. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Package: libvncserver (Red Hat Enterprise Linux 6) - Will not fix
Package: libvncserver (Red Hat Enterprise Linux 7) - Not affected
Package: libvncserver (Red Hat E
Red Hat
libvncserver: Heap out-of-bounds write in rfbserver.c in rfbProcessFileTransferReadBuffer() allows for potential code execution (Incomplete fix for CVE-2018-15127)
vendor_redhat·2019-01-06·CVSS 9.8
CVE-2018-20749 [CRITICAL] CWE-122 libvncserver: Heap out-of-bounds write in rfbserver.c in rfbProcessFileTransferReadBuffer() allows for potential code execution (Incomplete fix for CVE-2018-15127)
libvncserver: Heap out-of-bounds write in rfbserver.c in rfbProcessFileTransferReadBuffer() allows for potential code execution (Incomplete fix for CVE-2018-15127)
LibVNC before 0.9.12 contains a heap out-of-bounds write vulnerability in libvncserver/rfbserver.c. The fix for CVE-2018-15127 was incomplete.
A flaw was found in libvncserver. An incomplete fix for CVE-2018-15127 leaves open an out-of-bounds write vulnerability in code for the file transfer extension. This vulnerability can be remotely exploited. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Package: libvncserver (Red Hat Enterprise Linux 6) - Will not fix
Package: libvncserver (Red Hat Enterprise Linux 7) - Not affected
Package: libvncserver (Red Hat En
Red Hat
libvncserver: Heap out-of-bounds write in rfbserver.c in rfbProcessFileTransferReadBuffer() allows for potential code execution
vendor_redhat·2018-12-19·CVSS 9.8
CVE-2018-15127 [CRITICAL] CWE-122 libvncserver: Heap out-of-bounds write in rfbserver.c in rfbProcessFileTransferReadBuffer() allows for potential code execution
libvncserver: Heap out-of-bounds write in rfbserver.c in rfbProcessFileTransferReadBuffer() allows for potential code execution
LibVNC before commit 502821828ed00b4a2c4bef90683d0fd88ce495de contains heap out-of-bound write vulnerability in server code of file transfer extension that can result remote code execution
Package: libvncserver (Red Hat Enterprise Linux 6) - Will not fix
Package: libvncserver (Red Hat Enterprise Linux 8) - Not affected
Debian
CVE-2018-15127: libvncserver - LibVNC before commit 502821828ed00b4a2c4bef90683d0fd88ce495de contains heap out-...
vendor_debian·2018·CVSS 9.8
CVE-2018-15127 [CRITICAL] CVE-2018-15127: libvncserver - LibVNC before commit 502821828ed00b4a2c4bef90683d0fd88ce495de contains heap out-...
LibVNC before commit 502821828ed00b4a2c4bef90683d0fd88ce495de contains heap out-of-bound write vulnerability in server code of file transfer extension that can result remote code execution
Scope: local
bookworm: resolved (fixed in 0.9.11+dfsg-1.2)
bullseye: resolved (fixed in 0.9.11+dfsg-1.2)
forky: resolved (fixed in 0.9.11+dfsg-1.2)
sid: resolved (fixed in 0.9.11+dfsg-1.2)
trixie: resolved (fixed in 0.9.11+dfsg-1.2)
Debian
CVE-2018-20750: libvncserver - LibVNC through 0.9.12 contains a heap out-of-bounds write vulnerability in libvn...
vendor_debian·2018·CVSS 9.8
CVE-2018-20750 [CRITICAL] CVE-2018-20750: libvncserver - LibVNC through 0.9.12 contains a heap out-of-bounds write vulnerability in libvn...
LibVNC through 0.9.12 contains a heap out-of-bounds write vulnerability in libvncserver/rfbserver.c. The fix for CVE-2018-15127 was incomplete.
Scope: local
bookworm: resolved (fixed in 0.9.11+dfsg-1.3)
bullseye: resolved (fixed in 0.9.11+dfsg-1.3)
forky: resolved (fixed in 0.9.11+dfsg-1.3)
sid: resolved (fixed in 0.9.11+dfsg-1.3)
trixie: resolved (fixed in 0.9.11+dfsg-1.3)
Debian
CVE-2018-20749: libvncserver - LibVNC before 0.9.12 contains a heap out-of-bounds write vulnerability in libvnc...
vendor_debian·2018·CVSS 9.8
CVE-2018-20749 [CRITICAL] CVE-2018-20749: libvncserver - LibVNC before 0.9.12 contains a heap out-of-bounds write vulnerability in libvnc...
LibVNC before 0.9.12 contains a heap out-of-bounds write vulnerability in libvncserver/rfbserver.c. The fix for CVE-2018-15127 was incomplete.
Scope: local
bookworm: resolved (fixed in 0.9.11+dfsg-1.3)
bullseye: resolved (fixed in 0.9.11+dfsg-1.3)
forky: resolved (fixed in 0.9.11+dfsg-1.3)
sid: resolved (fixed in 0.9.11+dfsg-1.3)
trixie: resolved (fixed in 0.9.11+dfsg-1.3)
GHSA
GHSA-r6jv-7mgh-x66r: LibVNC before 0
ghsa_unreviewed·2022-05-13·CVSS 9.8
CVE-2018-20749 [CRITICAL] CWE-787 GHSA-r6jv-7mgh-x66r: LibVNC before 0
LibVNC before 0.9.12 contains a heap out-of-bounds write vulnerability in libvncserver/rfbserver.c. The fix for CVE-2018-15127 was incomplete.
GHSA
GHSA-2pgv-ghf3-xj9q: LibVNC before commit 502821828ed00b4a2c4bef90683d0fd88ce495de contains heap out-of-bound write vulnerability in server code of file transfer extension
ghsa_unreviewed·2022-05-13
CVE-2018-15127 [CRITICAL] CWE-787 GHSA-2pgv-ghf3-xj9q: LibVNC before commit 502821828ed00b4a2c4bef90683d0fd88ce495de contains heap out-of-bound write vulnerability in server code of file transfer extension
LibVNC before commit 502821828ed00b4a2c4bef90683d0fd88ce495de contains heap out-of-bound write vulnerability in server code of file transfer extension that can result remote code execution
GHSA
GHSA-g4v8-w4cc-whrg: LibVNC through 0
ghsa_unreviewed·2022-05-13·CVSS 9.8
CVE-2018-20750 [CRITICAL] CWE-787 GHSA-g4v8-w4cc-whrg: LibVNC through 0
LibVNC through 0.9.12 contains a heap out-of-bounds write vulnerability in libvncserver/rfbserver.c. The fix for CVE-2018-15127 was incomplete.
OSV
italc vulnerabilities
osv·2020-10-20·CVSS 7.5
CVE-2014-6051 [HIGH] italc vulnerabilities
italc vulnerabilities
Nicolas Ruff discovered that iTALC had buffer overflows, divide-by-zero errors
and didn't check malloc return values. A remote attacker could use these issues
to cause a denial of service or possibly execute arbitrary code.
(CVE-2014-6051, CVE-2014-6052, CVE-2014-6053, CVE-2014-6054, CVE-2014-6055)
Josef Gajdusek discovered that iTALC had heap-based buffer overflow
vulnerabilities. A remote attacker could used these issues to cause a denial of
service or possibly execute arbitrary code. (CVE-2016-9941, CVE-2016-9942)
It was discovered that iTALC had an out-of-bounds write, multiple heap
out-of-bounds writes, an infinite loop, improper initializations, and null
pointer vulnerabilities. A remote attacker could used these issues to cause a
denial of service or possibl
OSV
italc vulnerabilities
osv·2020-09-28·CVSS 9.8
CVE-2019-15681 [CRITICAL] italc vulnerabilities
italc vulnerabilities
It was discovered that an information disclosure vulnerability existed in the
LibVNCServer vendored in iTALC when sending a ServerCutText message. An
attacker could possibly use this issue to expose sensitive information.
(CVE-2019-15681)
It was discovered that the LibVNCServer and LibVNCClient vendored in iTALC
incorrectly handled certain packet lengths. A remote attacker could possibly
use this issue to obtain sensitive information, cause a denial of service, or
execute arbitrary code.
(CVE-2018-15127 CVE-2018-20019, CVE-2018-20020, CVE-2018-20021, CVE-2018-20022,
CVE-2018-20023, CVE-2018-20024, CVE-2018-20748, CVE-2018-20749, CVE-2018-20750,
CVE-2018-7225, CVE-2019-15681)
OSV
CVE-2018-20749: LibVNC before 0
osv·2019-01-30·CVSS 9.8
CVE-2018-20749 [CRITICAL] CVE-2018-20749: LibVNC before 0
LibVNC before 0.9.12 contains a heap out-of-bounds write vulnerability in libvncserver/rfbserver.c. The fix for CVE-2018-15127 was incomplete.
OSV
CVE-2018-20750: LibVNC through 0
osv·2019-01-30·CVSS 9.8
CVE-2018-20750 [CRITICAL] CVE-2018-20750: LibVNC through 0
LibVNC through 0.9.12 contains a heap out-of-bounds write vulnerability in libvncserver/rfbserver.c. The fix for CVE-2018-15127 was incomplete.
OSV
CVE-2018-15127: LibVNC before commit 502821828ed00b4a2c4bef90683d0fd88ce495de contains heap out-of-bound write vulnerability in server code of file transfer extension
osv·2018-12-19·CVSS 9.8
CVE-2018-15127 [CRITICAL] CVE-2018-15127: LibVNC before commit 502821828ed00b4a2c4bef90683d0fd88ce495de contains heap out-of-bound write vulnerability in server code of file transfer extension
LibVNC before commit 502821828ed00b4a2c4bef90683d0fd88ce495de contains heap out-of-bound write vulnerability in server code of file transfer extension that can result remote code execution
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-20750 libvncserver: Heap out-of-bounds write in rfbserver.c in rfbProcessFileTransferReadBuffer() allows for potential code execution (Incomplete fix for CVE-2018-15127)
bugzilla·2019-01-31·CVSS 9.8
CVE-2018-20750 [CRITICAL] CVE-2018-20750 libvncserver: Heap out-of-bounds write in rfbserver.c in rfbProcessFileTransferReadBuffer() allows for potential code execution (Incomplete fix for CVE-2018-15127)
CVE-2018-20750 libvncserver: Heap out-of-bounds write in rfbserver.c in rfbProcessFileTransferReadBuffer() allows for potential code execution (Incomplete fix for CVE-2018-15127)
LibVNC before 0.9.12 contains a heap out-of-bounds write vulnerability in libvncserver/rfbserver.c. The fix for CVE-2018-15127 was incomplete.
Upstream patch:
https://github.com/LibVNC/libvncserver/commit/09e8fc02f59f16e2583b34fe1a270c238bd9ffec
Upstream issue:
https://github.com/LibVNC/libvncserver/issues/273
Discussion:
Created libvncserver tracking bugs for this issue:
Affects: epel-7 [bug 1661116]
Affects: fedora-all [bug 1661115]
Bugzilla
CVE-2018-20749 libvncserver: Heap out-of-bounds write in rfbserver.c in rfbProcessFileTransferReadBuffer() allows for potential code execution (Incomplete fix for CVE-2018-15127)
bugzilla·2019-01-31·CVSS 9.8
CVE-2018-20749 [CRITICAL] CVE-2018-20749 libvncserver: Heap out-of-bounds write in rfbserver.c in rfbProcessFileTransferReadBuffer() allows for potential code execution (Incomplete fix for CVE-2018-15127)
CVE-2018-20749 libvncserver: Heap out-of-bounds write in rfbserver.c in rfbProcessFileTransferReadBuffer() allows for potential code execution (Incomplete fix for CVE-2018-15127)
LibVNC before 0.9.12 contains a heap out-of-bounds write vulnerability in libvncserver/rfbserver.c. The fix for CVE-2018-15127 was incomplete.
Upstream patch:
https://github.com/LibVNC/libvncserver/commit/15bb719c03cc70f14c36a843dcb16ed69b405707
Upstream issue:
https://github.com/LibVNC/libvncserver/issues/273
Discussion:
Created libvncserver tracking bugs for this issue:
Affects: epel-7 [bug 1661116]
Affects: fedora-all [bug 1661115]
Bugzilla
CVE-2018-15127 libvncserver: Heap out-of-bounds write in rfbserver.c:rfbProcessFileTransferReadBuffer() allows for potential code execution [fedora-all]
bugzilla·2018-12-20·CVSS 9.8
CVE-2018-15127 [CRITICAL] CVE-2018-15127 libvncserver: Heap out-of-bounds write in rfbserver.c:rfbProcessFileTransferReadBuffer() allows for potential code execution [fedora-all]
CVE-2018-15127 libvncserver: Heap out-of-bounds write in rfbserver.c:rfbProcessFileTransferReadBuffer() allows for potential code execution [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
f
Bugzilla
CVE-2018-15127 libvncserver: Heap out-of-bounds write in rfbserver.c:rfbProcessFileTransferReadBuffer() allows for potential code execution [epel-7]
bugzilla·2018-12-20·CVSS 9.8
CVE-2018-15127 [CRITICAL] CVE-2018-15127 libvncserver: Heap out-of-bounds write in rfbserver.c:rfbProcessFileTransferReadBuffer() allows for potential code execution [epel-7]
CVE-2018-15127 libvncserver: Heap out-of-bounds write in rfbserver.c:rfbProcessFileTransferReadBuffer() allows for potential code execution [epel-7]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-7.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg co
Bugzilla
CVE-2018-15127 libvncserver: Heap out-of-bounds write in rfbserver.c in rfbProcessFileTransferReadBuffer() allows for potential code execution
bugzilla·2018-12-20·CVSS 9.8
CVE-2018-15127 [CRITICAL] CVE-2018-15127 libvncserver: Heap out-of-bounds write in rfbserver.c in rfbProcessFileTransferReadBuffer() allows for potential code execution
CVE-2018-15127 libvncserver: Heap out-of-bounds write in rfbserver.c in rfbProcessFileTransferReadBuffer() allows for potential code execution
LibVNC before commit 502821828ed00b4a2c4bef90683d0fd88ce495de contains a heap out-of-bound write vulnerability in the server code of the file transfer extension, which can result in remote code execution. This attack appears to be exploitable via network connectivity. This vulnerability has been fixed in 502821828ed00b4a2c4bef90683d0fd88ce495de and later.
External Reference:
https://ics-cert.kaspersky.com/advisories/klcert-advisories/2018/12/19/klcert-18-028-libvnc-heap-out-of-bound-write/
Upstream Patch:
https://github.com/LibVNC/libvncserver/commit/502821828ed00b4a2c4bef90683d0fd88ce495de
Discussion:
Created libvncserver tracking bugs for
https://access.redhat.com/errata/RHSA-2019:0059https://ics-cert.kaspersky.com/advisories/klcert-advisories/2018/12/19/klcert-18-028-libvnc-heap-out-of-bound-write/https://lists.debian.org/debian-lts-announce/2018/12/msg00017.htmlhttps://lists.debian.org/debian-lts-announce/2019/10/msg00042.htmlhttps://usn.ubuntu.com/3877-1/https://usn.ubuntu.com/4547-1/https://usn.ubuntu.com/4587-1/https://www.debian.org/security/2019/dsa-4383https://access.redhat.com/errata/RHSA-2019:0059https://ics-cert.kaspersky.com/advisories/klcert-advisories/2018/12/19/klcert-18-028-libvnc-heap-out-of-bound-write/https://lists.debian.org/debian-lts-announce/2018/12/msg00017.htmlhttps://lists.debian.org/debian-lts-announce/2019/10/msg00042.htmlhttps://usn.ubuntu.com/3877-1/https://usn.ubuntu.com/4547-1/https://usn.ubuntu.com/4587-1/https://www.debian.org/security/2019/dsa-4383
2018-12-19
Published