VDB

GCVE-110-MAGEIA-2026-315

GCVE-110-MAGEIA-2026-315
Advisory Published
Vulnetix · Advisory published August 3, 2026
The updated packages fix security vulnerabilities: Heap Out-of-Bounds Read in HandleUltraZipBPP due to unchecked subrectangle count. (CVE-2026-32853) NULL pointer dereferences in httpd proxy handlers via malformed CONNECT/GET requests. (CVE-2026-32854) LibVNCClient Tight Gradient decoding allows malicious server-triggered heap/stack OOB writes. (CVE-2026-44988) Attacker-controlled heap out-of-bounds write in libvncclient Tight decoder. (CVE-2026-50538)

Affected Products

VendorProductVersionsPlatforms
Mageialibvncserver0 (affected), 0.9.14-1.1.mga9 (unaffected)
Mageialibvncserver0 (affected), 0.9.15-2.1.mga10 (unaffected)

Browse GCVE Records

67,606 records in the GCVE database · Updated August 12, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›