Описание
Security update for freerdp
This update for freerdp fixes the following issues:
Security issues fixed:
-
CVE-2013-4118: Add a NULL pointer check to fix a server crash (boo#829013).
-
CVE-2014-0791: The remaining length in the stream is checked before doing some malloc(), which could have lead to crashes. (boo#857491).
Список пакетов
openSUSE Leap 42.1
Ссылки
- E-Mail link for openSUSE-SU-2016:2402-1
- SUSE Security Ratings
Описание
FreeRDP before 1.1.0-beta1 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via unspecified vectors.
Затронутые продукты
Ссылки
- CVE-2013-4118
- SUSE Bug 829013
Описание
Integer overflow in the license_read_scope_list function in libfreerdp/core/license.c in FreeRDP through 1.0.2 allows remote RDP servers to cause a denial of service (application crash) or possibly have unspecified other impact via a large ScopeCount value in a Scope List in a Server License Request packet.
Затронутые продукты
Ссылки
- CVE-2014-0791
- SUSE Bug 857491
- SUSE Bug 975218