PT-2019-5420 · Freerdp+4 · Freerdp+4

Nico Waisman

·

Published

2015-04-01

·

Updated

2024-06-15

·

CVE-2019-17177

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions FreeRDP versions 1.1.x through 2.0.0-rc4
Description The issue is related to memory leaks in the FreeRDP implementation due to improper handling of a supplied realloc pointer. This can lead to a denial of service. The estimated number of potentially affected devices is not specified. There is no information about real-world incidents where this issue was exploited.
Recommendations For FreeRDP versions 1.1.x through 2.0.0-rc4, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Leak

Missing Release of Resource after Effective Lifetime

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2015-1346
BDU:2020-02923
CVE-2019-17177
MGASA-2019-0401
OESA-2021-1008
OPENSUSE-SU-2019:2604-1
OPENSUSE-SU-2019:2608-1
OPENSUSE-SU-2019_2604-1
OPENSUSE-SU-2019_2608-1
OPENSUSE-SU-2024:10768-1
SUSE-SU-2019:3077-1
SUSE-SU-2019:3078-1
SUSE-SU-2019:3079-1
SUSE-SU-2019_3077-1
SUSE-SU-2019_3078-1
SUSE-SU-2019_3079-1
USN-4379-1

Affected Products

Alt Linux
Freerdp
Linuxmint
Suse
Ubuntu