When starting the x11vnc with -localhost specified, it fail to restrict IPv6 accessibility to localhost. This is in conflict with the manual, which states: -localhost [...] IPv6: if IPv6 is supported, this option automatically implies the IPv6 loopback address '::1' as well.
Created x11vnc tracking bugs for this issue: Affects: fedora-all [bug 1323603] Affects: epel-all [bug 1323604]
Original bug report: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=672435
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.
According to the upstream change log this issue was fixed in x11vnc 0.9.15.