LibVNC before commit 7b1ef0ffc4815cab9a96c7278394152bdc89dc4d contains heap out-of-bound write vulnerability inside structure in VNC client code that can result remote code execution
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2018-20020.json"