Lucene search

K
redhatcveRedhat.comRH:CVE-2020-11098
HistoryJul 08, 2020 - 11:20 a.m.

CVE-2020-11098

2020-07-0811:20:45
redhat.com
access.redhat.com
8

0.004 Low

EPSS

Percentile

72.3%

In FreeRDP before version 2.1.2, there is an out-of-bound read in glyph_cache_put. This affects all FreeRDP clients with +glyph-cache option enabled This is fixed in version 2.1.2.

Mitigation

Do not use the +glyph_cache option in the freerdp client, which is disabled by default in freerdp-2.0.0.rc4 (shipped with Red Hat Enterprise Linux 7 and 8), but required to connect to xrdp.