Freerdp

Freerdp

239 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.15%
  • Veröffentlicht 29.05.2020 20:15:11
  • Zuletzt bearbeitet 21.11.2024 04:56:45

In FreeRDP before 2.1.0, there is an out-of-bound read in irp functions (parallel_process_irp_create, serial_process_irp_create, drive_process_irp_write, printer_process_irp_write, rdpei_recv_pdu, serial_process_irp_write). This has been fixed in 2.1...

  • EPSS 1.61%
  • Veröffentlicht 29.05.2020 20:15:10
  • Zuletzt bearbeitet 21.11.2024 04:56:39

In FreeRDP less than or equal to 2.0.0, there is an out-of-bound data read from memory in clear_decompress_subcode_rlex, visualized on screen as color. This has been patched in 2.1.0.

  • EPSS 1.91%
  • Veröffentlicht 29.05.2020 20:15:10
  • Zuletzt bearbeitet 21.11.2024 04:56:40

In FreeRDP less than or equal to 2.0.0, there is an out-of-bounds read in rfx_process_message_tileset. Invalid data fed to RFX decoder results in garbage on screen (as colors). This has been patched in 2.1.0.

  • EPSS 1.71%
  • Veröffentlicht 29.05.2020 20:15:10
  • Zuletzt bearbeitet 21.11.2024 04:56:45

In FreeRDP before 2.1.0, there is an out-of-bounds read in cliprdr_read_format_list. Clipboard format data read (by client or server) might read data out-of-bounds. This has been fixed in 2.1.0.

  • EPSS 1.43%
  • Veröffentlicht 29.05.2020 20:15:10
  • Zuletzt bearbeitet 21.11.2024 04:56:45

In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_ntlm_v2_client_challenge that reads up to 28 bytes out-of-bound to an internal structure. This has been fixed in 2.1.0.

  • EPSS 1.43%
  • Veröffentlicht 29.05.2020 20:15:10
  • Zuletzt bearbeitet 21.11.2024 04:56:45

In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_AuthenticateMessage. This has been fixed in 2.1.0.

  • EPSS 1.47%
  • Veröffentlicht 29.05.2020 20:15:10
  • Zuletzt bearbeitet 21.11.2024 04:56:45

In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_NegotiateMessage. This has been fixed in 2.1.0.

  • EPSS 2.54%
  • Veröffentlicht 29.05.2020 19:15:10
  • Zuletzt bearbeitet 21.11.2024 04:56:35

In FreeRDP less than or equal to 2.0.0, when running with logger set to "WLOG_TRACE", a possible crash of application could occur due to a read of an invalid array index. Data could be printed as string to local terminal. This has been fixed in 2.1.0...

  • EPSS 1.35%
  • Veröffentlicht 29.05.2020 19:15:10
  • Zuletzt bearbeitet 21.11.2024 04:56:39

In FreeRDP less than or equal to 2.0.0, an Integer Overflow to Buffer Overflow exists. When using /video redirection, a manipulated server can instruct the client to allocate a buffer with a smaller size than requested due to an integer overflow in s...

  • EPSS 1.27%
  • Veröffentlicht 29.05.2020 19:15:10
  • Zuletzt bearbeitet 21.11.2024 04:56:39

In FreeRDP less than or equal to 2.0.0, when using a manipulated server with USB redirection enabled (nearly) arbitrary memory can be read and written due to integer overflows in length checks. This has been patched in 2.1.0.