Описание
In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_NegotiateMessage. This has been fixed in 2.1.0.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
freerdp2 | fixed | 2.1.1+dfsg1-1 | package | |
freerdp | removed | package | ||
freerdp | no-dsa | stretch | package |
Примечания
https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-xh4f-fh87-43hp
Связанные уязвимости
In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_NegotiateMessage. This has been fixed in 2.1.0.
In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_NegotiateMessage. This has been fixed in 2.1.0.
In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_NegotiateMessage. This has been fixed in 2.1.0.
Moderate: freerdp and vinagre security, bug fix, and enhancement update
ELSA-2020-4647: freerdp and vinagre security, bug fix, and enhancement update (MODERATE)