PT-2014-3844 · Alt Linux+3 · Alt Linux+3

Sidhpurwala-Huzaifa

·

Published

2014-01-03

·

Updated

2024-06-15

·

CVE-2014-0791

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions FreeRDP versions prior to 1.0.2 ALT Linux (affected versions not specified)
Description The issue is related to an integer overflow in the license read scope list function, which can be triggered by a large ScopeCount value in a Scope List in a Server License Request packet. This can cause a denial of service, resulting in an application crash, and potentially have other unspecified impacts.
Recommendations For FreeRDP versions prior to 1.0.2, update to a version that includes a fix for the integer overflow in the license read scope list function. For ALT Linux, at the moment, there is no information about a newer version that contains a fix for this issue.

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2015-1346
CVE-2014-0791
DLA-2356-1
MGASA-2014-0287
OPENSUSE-SU-2024:10110-1
OPENSUSE-SU-2024:13816-1
SUSE-SU-2016:2506-1
USN-3380-1

Affected Products

Alt Linux
Freerdp
Suse
Ubuntu