CVE-2020-11038
Summary
| CVE | CVE-2020-11038 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-05-29 19:15:00 UTC |
| Updated | 2023-10-24 15:31:00 UTC |
| Description | In FreeRDP less than or equal to 2.0.0, an Integer Overflow to Buffer Overflow exists. When using /video redirection, a manipulated server can instruct the client to allocate a buffer with a smaller size than requested due to an integer overflow in size calculation. With later messages, the server can manipulate the client to write data out of bound to the previously allocated buffer. This has been patched in 2.1.0. |
Risk And Classification
Problem Types: CWE-680
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Integer overflow in VIDEO channel · Advisory · FreeRDP/FreeRDP · GitHub | CONFIRM | github.com | Third Party Advisory |
| [SECURITY] [DLA 3606-1] freerdp2 security update | MLIST | lists.debian.org | |
| [security-announce] openSUSE-SU-2020:1090-1: important: Security update | SUSE | lists.opensuse.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 377291 Alibaba Cloud Linux Security Update for freerdp (ALINUX2-SA-2020:0161)
- 6000137 Debian Security Update for freerdp2 (DLA 3606-1)
- 671555 EulerOS Security Update for freerdp (EulerOS-SA-2022-1564)
- 940155 AlmaLinux Security Update for freerdp and vinagre (ALSA-2020:4647)
- 960228 Rocky Linux Security Update for freerdp and vinagre (RLSA-2020:4647)