PT-2014-3844 · Alt Linux+3 · Alt Linux+3

Sidhpurwala-Huzaifa

·

Publicado

2014-01-03

·

Atualizado

2024-06-15

·

CVE-2014-0791

CVSS v2.0

6.8

Média

VetorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions FreeRDP versions prior to 1.0.2 ALT Linux (affected versions not specified)
Description The issue is related to an integer overflow in the license read scope list function, which can be triggered by a large ScopeCount value in a Scope List in a Server License Request packet. This can cause a denial of service, resulting in an application crash, and potentially have other unspecified impacts.
Recommendations For FreeRDP versions prior to 1.0.2, update to a version that includes a fix for the integer overflow in the license read scope list function. For ALT Linux, at the moment, there is no information about a newer version that contains a fix for this issue.

Correção

DoS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2015-1346
CVE-2014-0791
DLA-2356-1
MGASA-2014-0287
OPENSUSE-SU-2024:10110-1
OPENSUSE-SU-2024:13816-1
SUSE-SU-2016:2506-1
USN-3380-1

Produtos afetados

Alt Linux
Freerdp
Suse
Ubuntu