CVE Vulnerabilities

CVE-2014-0250

Published: Nov 16, 2014 | Modified: Mar 06, 2020
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
6.8 MODERATE
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
LOW

Multiple integer overflows in client/X11/xf_graphics.c in FreeRDP allow remote attackers to have an unspecified impact via the width and height to the (1) xf_Pointer_New or (2) xf_Bitmap_Decompress function, which causes an incorrect amount of memory to be allocated.

Affected Software

Name Vendor Start Version End Version
Freerdp Freerdp 1.0.0 (including) 1.0.0 (including)
Freerdp Freerdp 1.0.1 (including) 1.0.1 (including)
Freerdp Freerdp 1.0.2 (including) 1.0.2 (including)
Freerdp Ubuntu precise *
Freerdp Ubuntu saucy *
Freerdp Ubuntu trusty *
Freerdp Ubuntu utopic *
Freerdp Ubuntu vivid *
Freerdp Ubuntu wily *
Freerdp Ubuntu yakkety *

References