VDB
GCVE-110-MAGEIA-2026-315
GCVE-110-MAGEIA-2026-315
Advisory Published
The updated packages fix security vulnerabilities:
Heap Out-of-Bounds Read in HandleUltraZipBPP due to unchecked
subrectangle count. (CVE-2026-32853)
NULL pointer dereferences in httpd proxy handlers via malformed
CONNECT/GET requests. (CVE-2026-32854)
LibVNCClient Tight Gradient decoding allows malicious server-triggered
heap/stack OOB writes. (CVE-2026-44988)
Attacker-controlled heap out-of-bounds write in libvncclient Tight
decoder. (CVE-2026-50538)
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | libvncserver | 0 (affected), 0.9.14-1.1.mga9 (unaffected) | — |
| Mageia | libvncserver | 0 (affected), 0.9.15-2.1.mga10 (unaffected) | — |
References
Browse GCVE Records
67,606 records in the GCVE database · Updated August 12, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.