CVE-2020-4030

In FreeRDP before version 2.1.2, there is an out of bounds read in TrioParse. Logging might bypass string length checks due to an integer overflow. This is fixed in version 2.1.2.
Configurations

Configuration 1 (hide)

cpe:2.3:a:freerdp:freerdp:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:fedoraproject:fedora:31:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*

Configuration 3 (hide)

cpe:2.3:o:opensuse:leap:15.1:*:*:*:*:*:*:*

Configuration 4 (hide)

OR cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:esm:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:20.04:*:*:*:lts:*:*:*

Configuration 5 (hide)

cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*

History

07 Oct 2021, 17:22

Type Values Removed Values Added
CPE cpe:2.3:o:canonical:ubuntu_linux:20.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
References (UBUNTU) https://usn.ubuntu.com/4481-1/ - (UBUNTU) https://usn.ubuntu.com/4481-1/ - Third Party Advisory
CWE CWE-125 CWE-190

Information

Published : 2020-06-22 22:15

Updated : 2024-02-04 21:00


NVD link : CVE-2020-4030

Mitre link : CVE-2020-4030

CVE.ORG link : CVE-2020-4030


JSON object : View

Products Affected

canonical

  • ubuntu_linux

debian

  • debian_linux

fedoraproject

  • fedora

freerdp

  • freerdp

opensuse

  • leap
CWE
CWE-125

Out-of-bounds Read

CWE-190

Integer Overflow or Wraparound