PT-2023-4662 · Freerdp+2 · Freerdp+2

Pwn2Carr

·

Publicado

2023-08-31

·

Atualizado

2026-03-10

·

CVE-2023-40574

CVSS v3.1

6.5

Média

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions FreeRDP versions prior to 3.0.0-beta3
Description The issue is related to an Out-Of-Bounds Write in the writePixelBGRX function of the FreeRDP client, which is caused by incorrect calculations of the nHeight and srcStep variables. This can allow a remote attacker to cause a denial of service.
Recommendations For versions prior to 3.0.0-beta3, upgrade to version 3.0.0-beta3 or later to resolve the issue. As a temporary workaround, consider restricting access to the writePixelBGRX function until a patch is applied. However, since an upgrade is available, this should be the preferred course of action.

Exploit

Correção

DoS

Memory Corruption

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2023-05075
CVE-2023-40574
GHSA-422P-GJ6X-93CW
OPENSUSE-SU-2023_4893-1
OPENSUSE-SU-2024:13815-1
OPENSUSE-SU-2024:13816-1
OPENSUSE-SU-2026:20339-1
SUSE-SU-2023:4611-1
SUSE-SU-2023:4893-1

Produtos afetados

Freerdp
Red Os
Suse