TROYANOSYVIRUS
Voltar para CVEs

CVE-2014-0791

N/A

Descricao

Integer overflow in the license_read_scope_list function in libfreerdp/core/license.c in FreeRDP through 1.0.2 allows remote RDP servers to cause a denial of service (application crash) or possibly have unspecified other impact via a large ScopeCount value in a Scope List in a Server License Request packet.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado1/3/2014
Ultima modificacao4/29/2026
Fontenvd
Avistamentos honeypot0

Produtos afetados

freerdp:freerdp

Fraquezas (CWE)

CWE-189

Referencias

http://advisories.mageia.org/MGASA-2014-0287.html(af854a3a-2127-422b-91ae-364da2661108)
http://openwall.com/lists/oss-security/2014/01/02/5(af854a3a-2127-422b-91ae-364da2661108)
http://openwall.com/lists/oss-security/2014/01/03/4(af854a3a-2127-422b-91ae-364da2661108)
https://bugzilla.redhat.com/show_bug.cgi?id=998941(af854a3a-2127-422b-91ae-364da2661108)
https://github.com/FreeRDP/FreeRDP/pull/1649(af854a3a-2127-422b-91ae-364da2661108)

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.