CVE-2020-15103
Summary
| CVE | CVE-2020-15103 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-07-27 18:15:00 UTC |
| Updated | 2023-11-07 03:17:00 UTC |
| Description | In FreeRDP less than or equal to 2.1.2, an integer overflow exists due to missing input sanitation in rdpegfx channel. All FreeRDP clients are affected. The input rectangles from the server are not checked against local surface coordinates and blindly accepted. A malicious server can send data that will crash the client later on (invalid length arguments to a `memcpy`) This has been fixed in 2.2.0. As a workaround, stop using command line arguments /gfx, /gfx-h264 and /network:auto |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| USN-4481-1: FreeRDP vulnerabilities | Ubuntu security notices | Ubuntu |
UBUNTU |
usn.ubuntu.com |
Third Party Advisory |
| FreeRDP security and version 2.2.0 release by bmiklautz · Pull Request #6382 · FreeRDP/FreeRDP · GitHub |
MISC |
github.com |
Patch, Third Party Advisory |
| FreeRDP/ChangeLog at 616af2d5b86dc24c7b3e89870dbcffd841d9a535 · FreeRDP/FreeRDP · GitHub |
MISC |
github.com |
Release Notes, Third Party Advisory |
| [SECURITY] Fedora 32 Update: freerdp-2.2.0-1.fc32 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
Mailing List, Third Party Advisory |
| [SECURITY] Fedora 32 Update: freerdp-2.2.0-1.fc32 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [SECURITY] Fedora 31 Update: freerdp-2.2.0-1.fc31 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
Mailing List, Third Party Advisory |
| [security-announce] openSUSE-SU-2020:1332-1: moderate: Security update f |
SUSE |
lists.opensuse.org |
Mailing List, Third Party Advisory |
| [SECURITY] [DLA 3606-1] freerdp2 security update |
MLIST |
lists.debian.org |
|
| [SECURITY] Fedora 31 Update: freerdp-2.2.0-1.fc31 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| Integer overflow in RDPEGFX channel · Advisory · FreeRDP/FreeRDP · GitHub |
CONFIRM |
github.com |
Third Party Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 159221 Oracle Enterprise Linux Security Update for freerdp (ELSA-2021-1849)
- 239295 Red Hat Update for freerdp (RHSA-2021:1849)
- 500966 Alpine Linux Security Update for freerdp
- 6000137 Debian Security Update for freerdp2 (DLA 3606-1)
- 671555 EulerOS Security Update for freerdp (EulerOS-SA-2022-1564)
- 690484 Free Berkeley Software Distribution (FreeBSD) Security Update for freerdp (a955cdb7-d089-11ea-8c6f-080027eedc6a)
- 750634 OpenSUSE Security Update for freerdp (openSUSE-SU-2020:1332-1)
- 940286 AlmaLinux Security Update for freerdp (ALSA-2021:1849)
- 960882 Rocky Linux Security Update for freerdp (RLSA-2021:1849)