Search CVE reports
71 – 80 of 94 results
Some fixes available 4 of 5
In FreeRDP after 1.1 and before 2.0.0, there is an out-of-bound read of client memory that is then passed on to the protocol parser. This has been patched in 2.0.0.
2 affected packages
freerdp2, freerdp
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
freerdp2 | Not affected | Not affected | Fixed | Fixed |
freerdp | Not in release | Not in release | Not in release | Needs evaluation |
In FreeRDP after 1.0 and before 2.0.0, there is an out-of-bounds read. It only allows to abort a session. No data extraction is possible. This has been fixed in 2.0.0.
2 affected packages
freerdp, freerdp2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
freerdp | — | — | Not in release | Fixed |
freerdp2 | — | — | Fixed | Fixed |
In FreeRDP after 1.1 and before 2.0.0, there is an out-of-bounds read in autodetect_recv_bandwidth_measure_results. A malicious server can extract up to 8 bytes of client memory with a manipulated message by providing a short...
2 affected packages
freerdp, freerdp2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
freerdp | — | — | Not in release | Not affected |
freerdp2 | — | — | Fixed | Fixed |
In FreeRDP after 1.0 and before 2.0.0, there is a stream out-of-bounds seek in update_read_synchronize that could lead to a later out-of-bounds read.
2 affected packages
freerdp, freerdp2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
freerdp | — | — | Not in release | Fixed |
freerdp2 | — | — | Fixed | Fixed |
In FreeRDP after 1.0 and before 2.0.0, there is an out-of-bound read in in update_read_bitmap_data that allows client memory to be read to an image buffer. The result displayed on screen as colour.
2 affected packages
freerdp, freerdp2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
freerdp | — | — | Not in release | Fixed |
freerdp2 | — | — | Fixed | Fixed |
In FreeRDP greater than 1.2 and before 2.0.0, a double free in update_read_cache_bitmap_v3_order crashes the client application if corrupted data from a manipulated server is parsed. This has been patched in 2.0.0.
2 affected packages
freerdp, freerdp2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
freerdp | — | — | Not in release | Not affected |
freerdp2 | — | — | Fixed | Fixed |
In FreeRDP less than or equal to 2.0.0, there is an out-of-bounds read in rfx_process_message_tileset. Invalid data fed to RFX decoder results in garbage on screen (as colors). This has been patched in 2.1.0.
2 affected packages
freerdp, freerdp2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
freerdp | — | — | Not in release | Not affected |
freerdp2 | — | — | Fixed | Fixed |
In FreeRDP greater than 1.1 and before 2.0.0, there is an out-of-bounds read in update_read_icon_info. It allows reading a attacker-defined amount of client memory (32bit unsigned -> 4GB) to an intermediate buffer. This can be...
2 affected packages
freerdp, freerdp2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
freerdp | — | — | Not in release | Fixed |
freerdp2 | — | — | Fixed | Fixed |
In FreeRDP less than or equal to 2.0.0, an outside controlled array index is used unchecked for data used as configuration for sound backend (alsa, oss, pulse, ...). The most likely outcome is a crash of the client...
2 affected packages
freerdp, freerdp2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
freerdp | — | — | Not in release | Not affected |
freerdp2 | — | — | Fixed | Fixed |
In FreeRDP less than or equal to 2.0.0, there is an out-of-bound data read from memory in clear_decompress_subcode_rlex, visualized on screen as color. This has been patched in 2.1.0.
2 affected packages
freerdp, freerdp2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
freerdp | — | — | Not in release | Not affected |
freerdp2 | — | — | Fixed | Fixed |