Vulnerabilities > Debian
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2020-05-29 | CVE-2020-11089 | Out-of-bounds Read vulnerability in multiple products In FreeRDP before 2.1.0, there is an out-of-bound read in irp functions (parallel_process_irp_create, serial_process_irp_create, drive_process_irp_write, printer_process_irp_write, rdpei_recv_pdu, serial_process_irp_write). | 5.5 |
2020-05-29 | CVE-2020-11088 | Out-of-bounds Read vulnerability in multiple products In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_NegotiateMessage. | 5.4 |
2020-05-29 | CVE-2020-11087 | Out-of-bounds Read vulnerability in multiple products In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_AuthenticateMessage. | 5.4 |
2020-05-29 | CVE-2020-11086 | Out-of-bounds Read vulnerability in multiple products In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_ntlm_v2_client_challenge that reads up to 28 bytes out-of-bound to an internal structure. | 5.4 |
2020-05-29 | CVE-2020-11085 | Out-of-bounds Read vulnerability in multiple products In FreeRDP before 2.1.0, there is an out-of-bounds read in cliprdr_read_format_list. | 3.5 |
2020-05-29 | CVE-2020-11043 | Out-of-bounds Read vulnerability in multiple products In FreeRDP less than or equal to 2.0.0, there is an out-of-bounds read in rfx_process_message_tileset. | 2.7 |
2020-05-29 | CVE-2020-11040 | Out-of-bounds Read vulnerability in multiple products In FreeRDP less than or equal to 2.0.0, there is an out-of-bound data read from memory in clear_decompress_subcode_rlex, visualized on screen as color. | 2.7 |
2020-05-29 | CVE-2020-11041 | Improper Validation of Array Index vulnerability in multiple products In FreeRDP less than or equal to 2.0.0, an outside controlled array index is used unchecked for data used as configuration for sound backend (alsa, oss, pulse, ...). | 2.7 |
2020-05-29 | CVE-2020-11039 | Integer Overflow or Wraparound vulnerability in multiple products In FreeRDP less than or equal to 2.0.0, when using a manipulated server with USB redirection enabled (nearly) arbitrary memory can be read and written due to integer overflows in length checks. | 6.8 |
2020-05-29 | CVE-2020-11038 | Integer Overflow to Buffer Overflow vulnerability in multiple products In FreeRDP less than or equal to 2.0.0, an Integer Overflow to Buffer Overflow exists. | 5.4 |