CVE-2020-12867
- EPSS 0.13%
- Veröffentlicht 01.06.2020 14:15:10
- Zuletzt bearbeitet 21.11.2024 05:00:27
A NULL pointer dereference in sanei_epson_net_read in SANE Backends before 1.0.30 allows a malicious device connected to the same local network as the victim to cause a denial of service, aka GHSL-2020-075.
- EPSS 0.23%
- Veröffentlicht 29.05.2020 20:15:11
- Zuletzt bearbeitet 21.11.2024 04:56:45
In FreeRDP before 2.1.0, there is an out-of-bound read in irp functions (parallel_process_irp_create, serial_process_irp_create, drive_process_irp_write, printer_process_irp_write, rdpei_recv_pdu, serial_process_irp_write). This has been fixed in 2.1...
- EPSS 0.12%
- Veröffentlicht 29.05.2020 20:15:10
- Zuletzt bearbeitet 21.11.2024 04:56:39
In FreeRDP less than or equal to 2.0.0, there is an out-of-bound data read from memory in clear_decompress_subcode_rlex, visualized on screen as color. This has been patched in 2.1.0.
- EPSS 0.13%
- Veröffentlicht 29.05.2020 20:15:10
- Zuletzt bearbeitet 21.11.2024 04:56:40
In FreeRDP less than or equal to 2.0.0, there is an out-of-bounds read in rfx_process_message_tileset. Invalid data fed to RFX decoder results in garbage on screen (as colors). This has been patched in 2.1.0.
- EPSS 0.12%
- Veröffentlicht 29.05.2020 20:15:10
- Zuletzt bearbeitet 21.11.2024 04:56:45
In FreeRDP before 2.1.0, there is an out-of-bounds read in cliprdr_read_format_list. Clipboard format data read (by client or server) might read data out-of-bounds. This has been fixed in 2.1.0.
CVE-2020-11086
- EPSS 0.19%
- Veröffentlicht 29.05.2020 20:15:10
- Zuletzt bearbeitet 21.11.2024 04:56:45
In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_ntlm_v2_client_challenge that reads up to 28 bytes out-of-bound to an internal structure. This has been fixed in 2.1.0.
CVE-2020-11087
- EPSS 0.19%
- Veröffentlicht 29.05.2020 20:15:10
- Zuletzt bearbeitet 21.11.2024 04:56:45
In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_AuthenticateMessage. This has been fixed in 2.1.0.
CVE-2020-11088
- EPSS 0.19%
- Veröffentlicht 29.05.2020 20:15:10
- Zuletzt bearbeitet 21.11.2024 04:56:45
In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_NegotiateMessage. This has been fixed in 2.1.0.
CVE-2020-11019
- EPSS 0.38%
- Veröffentlicht 29.05.2020 19:15:10
- Zuletzt bearbeitet 21.11.2024 04:56:35
In FreeRDP less than or equal to 2.0.0, when running with logger set to "WLOG_TRACE", a possible crash of application could occur due to a read of an invalid array index. Data could be printed as string to local terminal. This has been fixed in 2.1.0...
CVE-2020-11038
- EPSS 0.18%
- Veröffentlicht 29.05.2020 19:15:10
- Zuletzt bearbeitet 21.11.2024 04:56:39
In FreeRDP less than or equal to 2.0.0, an Integer Overflow to Buffer Overflow exists. When using /video redirection, a manipulated server can instruct the client to allocate a buffer with a smaller size than requested due to an integer overflow in s...