CVE Vulnerabilities

CVE-2020-11044

Double Free

Published: May 07, 2020 | Modified: Nov 21, 2024
CVSS 3.x
2.2
LOW
Source:
NVD
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:L
CVSS 2.x
3.5 LOW
AV:N/AC:M/Au:S/C:N/I:N/A:P
RedHat/V2
RedHat/V3
2.2 LOW
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:L
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

In FreeRDP greater than 1.2 and before 2.0.0, a double free in update_read_cache_bitmap_v3_order crashes the client application if corrupted data from a manipulated server is parsed. This has been patched in 2.0.0.

Weakness

The product calls free() twice on the same memory address.

Affected Software

NameVendorStart VersionEnd Version
FreerdpFreerdp1.2.0 (excluding)2.0.0 (excluding)
Red Hat Enterprise Linux 7RedHatfreerdp-0:2.1.1-2.el7*
Red Hat Enterprise Linux 8RedHatfreerdp-2:2.1.1-1.el8*
Red Hat Enterprise Linux 8RedHatvinagre-0:3.22.0-23.el8*
FreerdpUbuntutrusty*
Freerdp2Ubuntubionic*
Freerdp2Ubuntueoan*
Freerdp2Ubuntuesm-infra/bionic*
Freerdp2Ubuntuesm-infra/focal*
Freerdp2Ubuntufocal*
Freerdp2Ubuntutrusty*

Potential Mitigations

References