Описание
FreeRDP Windows client before 3.29.0 contains a heap buffer overflow vulnerability in the clipboard virtual channel when processing CLIPRDR_FILE_CONTENTS_RESPONSE PDUs without validating the server-provided size against the destination buffer. A malicious RDP server can send a response with a data payload significantly larger than requested, causing arbitrary heap memory corruption that may enable remote code execution when a user performs a paste operation.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-apps/bionic | not-affected | windows only |
| esm-infra-legacy/xenial | not-affected | windows only |
| jammy | DNE | |
| noble | DNE | |
| resolute | DNE | |
| upstream | not-affected | windows only |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-apps/noble | not-affected | windows only |
| esm-infra/bionic | not-affected | windows only |
| esm-infra/focal | not-affected | windows only |
| jammy | not-affected | windows only |
| noble | not-affected | windows only |
| resolute | DNE | |
| upstream | not-affected | debian: Only affects the FreeRDP Windows client |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | windows only |
| jammy | DNE | |
| noble | not-affected | windows only |
| resolute | not-affected | windows only |
| upstream | not-affected | debian: Only affects the FreeRDP Windows client |
Показывать по
EPSS
Связанные уязвимости
FreeRDP Windows client before 3.29.0 contains a heap buffer overflow vulnerability in the clipboard virtual channel when processing CLIPRDR_FILE_CONTENTS_RESPONSE PDUs without validating the server-provided size against the destination buffer. A malicious RDP server can send a response with a data payload significantly larger than requested, causing arbitrary heap memory corruption that may enable remote code execution when a user performs a paste operation.
FreeRDP Windows client before 3.29.0 contains a heap buffer overflow vulnerability in the clipboard virtual channel when processing CLIPRDR_FILE_CONTENTS_RESPONSE PDUs without validating the server-provided size against the destination buffer. A malicious RDP server can send a response with a data payload significantly larger than requested, causing arbitrary heap memory corruption that may enable remote code execution when a user performs a paste operation.
FreeRDP Windows client before 3.29.0 contains a heap buffer overflow v ...
FreeRDP Windows client before 3.29.0 contains a heap buffer overflow vulnerability in the clipboard virtual channel when processing CLIPRDR_FILE_CONTENTS_RESPONSE PDUs without validating the server-provided size against the destination buffer. A malicious RDP server can send a response with a data payload significantly larger than requested, causing arbitrary heap memory corruption that may enable remote code execution when a user performs a paste operation.
EPSS