Skip to content

Global OOB read in update_recv_primary_order

Low
akallabeth published GHSA-563r-pvh7-4fw2 Jun 22, 2020

Package

FreeRDP

Affected versions

<= 2.1.1

Patched versions

2.1.2

Description

Impact

  • All clients
  • OOB reads occurs resulting in accessing a memory location that is outside of the boundaries of the static array PRIMARY_DRAWING_ORDER_FIELD_BYTES

Patches

Workarounds

None

References

GHSL-2020-124

Severity

Low

CVE ID

CVE-2020-11095

Weaknesses

No CWEs