rpm package
suse/freerdp&distro=SUSE Linux Enterprise Workstation Extension 12 SP5
pkg:rpm/suse/freerdp&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP5
Vulnerabilities (86)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2020-11017 | Med | 6.5 | < 2.1.2-12.20.1 | 2.1.2-12.20.1 | May 29, 2020 | In FreeRDP less than or equal to 2.0.0, by providing manipulated input a malicious client can create a double free condition and crash the server. This is fixed in version 2.1.0. | |
| CVE-2020-13398 | Hig | 8.3 | < 2.1.2-12.20.1 | 2.1.2-12.20.1 | May 22, 2020 | An issue was discovered in FreeRDP before 2.1.1. An out-of-bounds (OOB) write vulnerability has been detected in crypto_rsa_common in libfreerdp/crypto/crypto.c. | |
| CVE-2020-13397 | Med | 5.5 | < 2.1.2-12.20.1 | 2.1.2-12.20.1 | May 22, 2020 | An issue was discovered in FreeRDP before 2.1.1. An out-of-bounds (OOB) read vulnerability has been detected in security_fips_decrypt in libfreerdp/core/security.c due to an uninitialized value. | |
| CVE-2020-13396 | Hig | 7.1 | < 2.1.2-12.20.1 | 2.1.2-12.20.1 | May 22, 2020 | An issue was discovered in FreeRDP before 2.1.1. An out-of-bounds (OOB) read vulnerability has been detected in ntlm_read_ChallengeMessage in winpr/libwinpr/sspi/NTLM/ntlm_message.c. | |
| CVE-2020-11526 | Low | 2.2 | < 2.1.2-12.20.1 | 2.1.2-12.20.1 | May 15, 2020 | libfreerdp/core/update.c in FreeRDP versions > 1.1 through 2.0.0-rc4 has an Out-of-bounds Read. | |
| CVE-2020-11525 | Low | 2.2 | < 2.1.2-12.20.1 | 2.1.2-12.20.1 | May 15, 2020 | libfreerdp/cache/bitmap.c in FreeRDP versions > 1.0 through 2.0.0-rc4 has an Out of bounds read. | |
| CVE-2020-11524 | Med | 6.6 | < 2.1.2-12.20.1 | 2.1.2-12.20.1 | May 15, 2020 | libfreerdp/codec/interleaved.c in FreeRDP versions > 1.0 through 2.0.0-rc4 has an Out-of-bounds Write. | |
| CVE-2020-11523 | Med | 6.6 | < 2.1.2-12.20.1 | 2.1.2-12.20.1 | May 15, 2020 | libfreerdp/gdi/region.c in FreeRDP versions > 1.0 through 2.0.0-rc4 has an Integer Overflow. | |
| CVE-2020-11522 | Med | 6.5 | < 2.1.2-12.20.1 | 2.1.2-12.20.1 | May 15, 2020 | libfreerdp/gdi/gdi.c in FreeRDP > 1.0 through 2.0.0-rc4 has an Out-of-bounds Read. | |
| CVE-2020-11521 | Med | 6.6 | < 2.1.2-12.20.1 | 2.1.2-12.20.1 | May 15, 2020 | libfreerdp/codec/planar.c in FreeRDP version > 1.0 through 2.0.0-rc4 has an Out-of-bounds Write. | |
| CVE-2019-17178 | Hig | 7.5 | < 2.0.0~git.1463131968.4e66df7-12.11.1 | 2.0.0~git.1463131968.4e66df7-12.11.1 | Oct 4, 2019 | HuffmanTree_makeFromFrequencies in lodepng.c in LodePNG through 2019-09-28, as used in WinPR in FreeRDP and other products, has a memory leak because a supplied realloc pointer (i.e., the first argument to realloc) is also used for a realloc return value. | |
| CVE-2019-17177 | Hig | 7.5 | < 2.0.0~git.1463131968.4e66df7-12.11.1 | 2.0.0~git.1463131968.4e66df7-12.11.1 | Oct 4, 2019 | libfreerdp/codec/region.c in FreeRDP through 1.1.x and 2.x through 2.0.0-rc4 has memory leaks because a supplied realloc pointer (i.e., the first argument to realloc) is also used for a realloc return value. | |
| CVE-2018-1000852 | Med | 6.5 | < 2.1.2-12.20.1 | 2.1.2-12.20.1 | Dec 20, 2018 | FreeRDP FreeRDP 2.0.0-rc3 released version before commit 205c612820dac644d665b5bb1cdf437dc5ca01e3 contains a Other/Unknown vulnerability in channels/drdynvc/client/drdynvc_main.c, drdynvc_process_capability_request that can result in The RDP server can read the client's memory.. | |
| CVE-2018-8789 | Hig | 7.5 | < 2.1.2-12.20.1 | 2.1.2-12.20.1 | Nov 29, 2018 | FreeRDP prior to version 2.0.0-rc4 contains several Out-Of-Bounds Reads in the NTLM Authentication module that results in a Denial of Service (segfault). | |
| CVE-2018-8788 | Cri | 9.8 | < 2.1.2-12.20.1 | 2.1.2-12.20.1 | Nov 29, 2018 | FreeRDP prior to version 2.0.0-rc4 contains an Out-Of-Bounds Write of up to 4 bytes in function nsc_rle_decode() that results in a memory corruption and possibly even a remote code execution. | |
| CVE-2018-8787 | Cri | 9.8 | < 2.1.2-12.20.1 | 2.1.2-12.20.1 | Nov 29, 2018 | FreeRDP prior to version 2.0.0-rc4 contains an Integer Overflow that leads to a Heap-Based Buffer Overflow in function gdi_Bitmap_Decompress() and results in a memory corruption and probably even a remote code execution. | |
| CVE-2018-8786 | Cri | 9.8 | < 2.1.2-12.20.1 | 2.1.2-12.20.1 | Nov 29, 2018 | FreeRDP prior to version 2.0.0-rc4 contains an Integer Truncation that leads to a Heap-Based Buffer Overflow in function update_read_bitmap_update() and results in a memory corruption and probably even a remote code execution. | |
| CVE-2018-8785 | Cri | 9.8 | < 2.1.2-12.20.1 | 2.1.2-12.20.1 | Nov 29, 2018 | FreeRDP prior to version 2.0.0-rc4 contains a Heap-Based Buffer Overflow in function zgfx_decompress() that results in a memory corruption and probably even a remote code execution. | |
| CVE-2018-8784 | Cri | 9.8 | < 2.1.2-12.20.1 | 2.1.2-12.20.1 | Nov 29, 2018 | FreeRDP prior to version 2.0.0-rc4 contains a Heap-Based Buffer Overflow in function zgfx_decompress_segment() that results in a memory corruption and probably even a remote code execution. | |
| CVE-2017-2839 | Med | 5.9 | < 2.1.2-12.20.1 | 2.1.2-12.20.1 | Apr 24, 2018 | An exploitable denial of service vulnerability exists within the handling of challenge packets in FreeRDP 2.0.0-beta1+android11. A specially crafted challenge packet can cause the program termination leading to a denial of service condition. An attacker can compromise the server |
- affected < 2.1.2-12.20.1fixed 2.1.2-12.20.1
In FreeRDP less than or equal to 2.0.0, by providing manipulated input a malicious client can create a double free condition and crash the server. This is fixed in version 2.1.0.
- affected < 2.1.2-12.20.1fixed 2.1.2-12.20.1
An issue was discovered in FreeRDP before 2.1.1. An out-of-bounds (OOB) write vulnerability has been detected in crypto_rsa_common in libfreerdp/crypto/crypto.c.
- affected < 2.1.2-12.20.1fixed 2.1.2-12.20.1
An issue was discovered in FreeRDP before 2.1.1. An out-of-bounds (OOB) read vulnerability has been detected in security_fips_decrypt in libfreerdp/core/security.c due to an uninitialized value.
- affected < 2.1.2-12.20.1fixed 2.1.2-12.20.1
An issue was discovered in FreeRDP before 2.1.1. An out-of-bounds (OOB) read vulnerability has been detected in ntlm_read_ChallengeMessage in winpr/libwinpr/sspi/NTLM/ntlm_message.c.
- affected < 2.1.2-12.20.1fixed 2.1.2-12.20.1
libfreerdp/core/update.c in FreeRDP versions > 1.1 through 2.0.0-rc4 has an Out-of-bounds Read.
- affected < 2.1.2-12.20.1fixed 2.1.2-12.20.1
libfreerdp/cache/bitmap.c in FreeRDP versions > 1.0 through 2.0.0-rc4 has an Out of bounds read.
- affected < 2.1.2-12.20.1fixed 2.1.2-12.20.1
libfreerdp/codec/interleaved.c in FreeRDP versions > 1.0 through 2.0.0-rc4 has an Out-of-bounds Write.
- affected < 2.1.2-12.20.1fixed 2.1.2-12.20.1
libfreerdp/gdi/region.c in FreeRDP versions > 1.0 through 2.0.0-rc4 has an Integer Overflow.
- affected < 2.1.2-12.20.1fixed 2.1.2-12.20.1
libfreerdp/gdi/gdi.c in FreeRDP > 1.0 through 2.0.0-rc4 has an Out-of-bounds Read.
- affected < 2.1.2-12.20.1fixed 2.1.2-12.20.1
libfreerdp/codec/planar.c in FreeRDP version > 1.0 through 2.0.0-rc4 has an Out-of-bounds Write.
- affected < 2.0.0~git.1463131968.4e66df7-12.11.1fixed 2.0.0~git.1463131968.4e66df7-12.11.1
HuffmanTree_makeFromFrequencies in lodepng.c in LodePNG through 2019-09-28, as used in WinPR in FreeRDP and other products, has a memory leak because a supplied realloc pointer (i.e., the first argument to realloc) is also used for a realloc return value.
- affected < 2.0.0~git.1463131968.4e66df7-12.11.1fixed 2.0.0~git.1463131968.4e66df7-12.11.1
libfreerdp/codec/region.c in FreeRDP through 1.1.x and 2.x through 2.0.0-rc4 has memory leaks because a supplied realloc pointer (i.e., the first argument to realloc) is also used for a realloc return value.
- affected < 2.1.2-12.20.1fixed 2.1.2-12.20.1
FreeRDP FreeRDP 2.0.0-rc3 released version before commit 205c612820dac644d665b5bb1cdf437dc5ca01e3 contains a Other/Unknown vulnerability in channels/drdynvc/client/drdynvc_main.c, drdynvc_process_capability_request that can result in The RDP server can read the client's memory..
- affected < 2.1.2-12.20.1fixed 2.1.2-12.20.1
FreeRDP prior to version 2.0.0-rc4 contains several Out-Of-Bounds Reads in the NTLM Authentication module that results in a Denial of Service (segfault).
- affected < 2.1.2-12.20.1fixed 2.1.2-12.20.1
FreeRDP prior to version 2.0.0-rc4 contains an Out-Of-Bounds Write of up to 4 bytes in function nsc_rle_decode() that results in a memory corruption and possibly even a remote code execution.
- affected < 2.1.2-12.20.1fixed 2.1.2-12.20.1
FreeRDP prior to version 2.0.0-rc4 contains an Integer Overflow that leads to a Heap-Based Buffer Overflow in function gdi_Bitmap_Decompress() and results in a memory corruption and probably even a remote code execution.
- affected < 2.1.2-12.20.1fixed 2.1.2-12.20.1
FreeRDP prior to version 2.0.0-rc4 contains an Integer Truncation that leads to a Heap-Based Buffer Overflow in function update_read_bitmap_update() and results in a memory corruption and probably even a remote code execution.
- affected < 2.1.2-12.20.1fixed 2.1.2-12.20.1
FreeRDP prior to version 2.0.0-rc4 contains a Heap-Based Buffer Overflow in function zgfx_decompress() that results in a memory corruption and probably even a remote code execution.
- affected < 2.1.2-12.20.1fixed 2.1.2-12.20.1
FreeRDP prior to version 2.0.0-rc4 contains a Heap-Based Buffer Overflow in function zgfx_decompress_segment() that results in a memory corruption and probably even a remote code execution.
- affected < 2.1.2-12.20.1fixed 2.1.2-12.20.1
An exploitable denial of service vulnerability exists within the handling of challenge packets in FreeRDP 2.0.0-beta1+android11. A specially crafted challenge packet can cause the program termination leading to a denial of service condition. An attacker can compromise the server
Page 4 of 5