Lucene search

K
ubuntuUbuntuUSN-4481-1
HistorySep 01, 2020 - 12:00 a.m.

FreeRDP vulnerabilities

2020-09-0100:00:00
ubuntu.com
60
freerdp
ubuntu
vulnerabilities
memory operations
denial of service
arbitrary code execution

CVSS2

6.4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:N/A:P

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

7.4

Confidence

Low

EPSS

0.008

Percentile

82.0%

Releases

  • Ubuntu 20.04 LTS
  • Ubuntu 18.04 ESM

Packages

  • freerdp2 - RDP client for Windows Terminal Services

Details

It was discovered that FreeRDP incorrectly handled certain memory
operations. A remote attacker could use this issue to cause FreeRDP to
crash, resulting in a denial of service, or possibly execute arbitrary
code.

OSVersionArchitecturePackageVersionFilename
Ubuntu20.04noarchlibfreerdp-client2-2< 2.2.0+dfsg1-0ubuntu0.20.04.1UNKNOWN
Ubuntu20.04noarchfreerdp2-dev< 2.2.0+dfsg1-0ubuntu0.20.04.1UNKNOWN
Ubuntu20.04noarchfreerdp2-shadow-x11< 2.2.0+dfsg1-0ubuntu0.20.04.1UNKNOWN
Ubuntu20.04noarchfreerdp2-wayland< 2.2.0+dfsg1-0ubuntu0.20.04.1UNKNOWN
Ubuntu20.04noarchfreerdp2-x11< 2.2.0+dfsg1-0ubuntu0.20.04.1UNKNOWN
Ubuntu20.04noarchlibfreerdp-server2-2< 2.2.0+dfsg1-0ubuntu0.20.04.1UNKNOWN
Ubuntu20.04noarchlibfreerdp-shadow-subsystem2-2< 2.2.0+dfsg1-0ubuntu0.20.04.1UNKNOWN
Ubuntu20.04noarchlibfreerdp-shadow2-2< 2.2.0+dfsg1-0ubuntu0.20.04.1UNKNOWN
Ubuntu20.04noarchlibfreerdp2-2< 2.2.0+dfsg1-0ubuntu0.20.04.1UNKNOWN
Ubuntu20.04noarchlibuwac0-0< 2.2.0+dfsg1-0ubuntu0.20.04.1UNKNOWN
Rows per page:
1-10 of 421

CVSS2

6.4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:N/A:P

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

7.4

Confidence

Low

EPSS

0.008

Percentile

82.0%