PT-2022-5610 · Freerdp+9 · Freerdp+9

Akallabeth

·

Published

2022-11-14

·

Updated

2025-02-15

·

CVE-2022-39319

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions FreeRDP versions prior to 2.9.0
Description The issue is related to missing input length validation in the urbdrc channel of the FreeRDP library. A malicious server can exploit this to trick a FreeRDP-based client into reading out-of-bound data and sending it back to the server. This could allow an attacker to gain unauthorized access to protected information or cause a denial of service.
Recommendations For versions prior to 2.9.0, upgrade to version 2.9.0 or later to address the issue. As a temporary workaround for users unable to upgrade, do not use the /usb redirection switch to minimize the risk of exploitation.

Exploit

Fix

Buffer Overflow

Path traversal

Divide By Zero

Out of bounds Read

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

ALSA-2023:2326
ALSA-2023:2851
ALT-PU-2022-3127
ALT-PU-2022-3189
ALT-PU-2022-3199
ALT-PU-2022-3288
BDU:2022-06969
BDU:2022-06970
BDU:2022-06971
BDU:2022-06972
BDU:2022-06973
BDU:2022-06975
BDU:2022-06976
CESA-2023_2851
CVE-2022-39319
DLA-3654-1
DLA-4053-1
GHSA-MVXM-WFJ2-5FVH
MGASA-2022-0447
OESA-2022-2112
OPENSUSE-SU-2022_4224-1
OPENSUSE-SU-2022_4292-1
RHSA-2023:2326
RHSA-2023:2851
RHSA-2023_2326
RHSA-2023_2851
SUSE-SU-2022:4224-1
SUSE-SU-2022:4292-1
SUSE-SU-2022:4293-1
USN-5734-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Freerdp
Linuxmint
Red Hat
Red Os
Suse
Ubuntu