PT-2014-3844 · Alt Linux+3 · Alt Linux+3
Sidhpurwala-Huzaifa
·
Published
2014-01-03
·
Updated
2024-06-15
·
CVE-2014-0791
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
FreeRDP versions prior to 1.0.2
ALT Linux (affected versions not specified)
Description
The issue is related to an integer overflow in the
license read scope list function, which can be triggered by a large ScopeCount value in a Scope List in a Server License Request packet. This can cause a denial of service, resulting in an application crash, and potentially have other unspecified impacts.Recommendations
For FreeRDP versions prior to 1.0.2, update to a version that includes a fix for the integer overflow in the
license read scope list function.
For ALT Linux, at the moment, there is no information about a newer version that contains a fix for this issue.Fix
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Freerdp
Suse
Ubuntu