ALT-BU-2016-2684-1
Branch sisyphus update bulletin.
Package adobe-flash-player updated to version 11-alt61 for branch sisyphus in task 162673.
Closed vulnerabilities
BDU:2016-00943
Уязвимость программной платформы Flash Player, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2016-00976
Уязвимость программной платформы Flash Player, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2016-00977
Уязвимость программной платформы Flash Player, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2016-00978
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
BDU:2016-00979
Уязвимость программной платформы Flash Player, позволяющая нарушителю обойти существующие ограничения доступа
BDU:2016-00980
Уязвимость программной платформы Flash Player, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2016-00981
Уязвимость программной платформы Flash Player, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2016-00982
Уязвимость программной платформы Flash Player, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2016-00983
Уязвимость программной платформы Flash Player, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2016-00984
Уязвимость программной платформы Flash Player, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2016-00985
Уязвимость программной платформы Flash Player, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2016-00986
Уязвимость программной платформы Flash Player, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2016-00987
Уязвимость программной платформы Flash Player, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2016-00988
Уязвимость программной платформы Flash Player, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2016-00989
Уязвимость программной платформы Flash Player, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2016-00990
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
BDU:2016-00991
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
BDU:2016-00992
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
BDU:2016-00993
Уязвимость программной платформы Flash Player, позволяющая нарушителю повысить свои привилегии
BDU:2016-00994
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
BDU:2016-00995
Уязвимость программной платформы Flash Player, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2016-00996
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
BDU:2016-01079
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
BDU:2016-01080
Уязвимость программной платформы Flash Player, позволяющая нарушителю обойти защитный механизм ASLR
Modified: 2024-11-21
CVE-2016-1006
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to bypass the ASLR protection mechanism via JIT data.
Modified: 2024-11-21
CVE-2016-1011
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-1013, CVE-2016-1016, CVE-2016-1017, and CVE-2016-1031.
- SUSE-SU-2016:1305
- SUSE-SU-2016:1305
- openSUSE-SU-2016:1306
- openSUSE-SU-2016:1306
- http://packetstormsecurity.com/files/137050/Adobe-Flash-MovieClip.duplicateMovieClip-Use-After-Free.html
- http://packetstormsecurity.com/files/137050/Adobe-Flash-MovieClip.duplicateMovieClip-Use-After-Free.html
- RHSA-2016:0610
- RHSA-2016:0610
- 85926
- 85926
- 1035509
- 1035509
- MS16-050
- MS16-050
- https://helpx.adobe.com/security/products/flash-player/apsb16-10.html
- https://helpx.adobe.com/security/products/flash-player/apsb16-10.html
- 39779
- 39779
Modified: 2024-11-21
CVE-2016-1012
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1020, CVE-2016-1021, CVE-2016-1022, CVE-2016-1023, CVE-2016-1024, CVE-2016-1025, CVE-2016-1026, CVE-2016-1027, CVE-2016-1028, CVE-2016-1029, CVE-2016-1032, and CVE-2016-1033.
Modified: 2024-11-21
CVE-2016-1013
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-1011, CVE-2016-1016, CVE-2016-1017, and CVE-2016-1031.
- SUSE-SU-2016:1305
- SUSE-SU-2016:1305
- openSUSE-SU-2016:1306
- openSUSE-SU-2016:1306
- RHSA-2016:0610
- RHSA-2016:0610
- 85926
- 85926
- 1035509
- 1035509
- MS16-050
- MS16-050
- https://helpx.adobe.com/security/products/flash-player/apsb16-10.html
- https://helpx.adobe.com/security/products/flash-player/apsb16-10.html
- 39778
- 39778
Modified: 2024-11-21
CVE-2016-1014
Untrusted search path vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows local users to gain privileges via a Trojan horse resource in an unspecified directory.
- SUSE-SU-2016:1305
- SUSE-SU-2016:1305
- openSUSE-SU-2016:1306
- openSUSE-SU-2016:1306
- http://packetstormsecurity.com/files/137532/Adobe-Flash-Player-DLL-Hijacking.html
- http://packetstormsecurity.com/files/137532/Adobe-Flash-Player-DLL-Hijacking.html
- RHSA-2016:0610
- RHSA-2016:0610
- 20160618 [CVE-2016-1014] Escalation of privilege via executable (un)installers of Flash Player
- 20160618 [CVE-2016-1014] Escalation of privilege via executable (un)installers of Flash Player
- 20160617 [CVE-2016-1014] Escalation of privilege via executable (un)installers of Flash Player
- 20160617 [CVE-2016-1014] Escalation of privilege via executable (un)installers of Flash Player
- 1035509
- 1035509
- MS16-050
- MS16-050
- https://helpx.adobe.com/security/products/flash-player/apsb16-10.html
- https://helpx.adobe.com/security/products/flash-player/apsb16-10.html
Modified: 2024-11-21
CVE-2016-1015
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code by overriding NetConnection object properties to leverage an unspecified "type confusion," a different vulnerability than CVE-2016-1019.
- SUSE-SU-2016:1305
- SUSE-SU-2016:1305
- openSUSE-SU-2016:1306
- openSUSE-SU-2016:1306
- RHSA-2016:0610
- RHSA-2016:0610
- 85930
- 85930
- 1035509
- 1035509
- http://www.zerodayinitiative.com/advisories/ZDI-16-227/
- http://www.zerodayinitiative.com/advisories/ZDI-16-227/
- MS16-050
- MS16-050
- https://helpx.adobe.com/security/products/flash-player/apsb16-10.html
- https://helpx.adobe.com/security/products/flash-player/apsb16-10.html
Modified: 2024-11-21
CVE-2016-1016
Use-after-free vulnerability in the Transform object implementation in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code via a flash.geom.Matrix callback, a different vulnerability than CVE-2016-1011, CVE-2016-1013, CVE-2016-1017, and CVE-2016-1031.
- SUSE-SU-2016:1305
- SUSE-SU-2016:1305
- openSUSE-SU-2016:1306
- openSUSE-SU-2016:1306
- RHSA-2016:0610
- RHSA-2016:0610
- 85926
- 85926
- 1035509
- 1035509
- http://www.zerodayinitiative.com/advisories/ZDI-16-226/
- http://www.zerodayinitiative.com/advisories/ZDI-16-226/
- MS16-050
- MS16-050
- https://helpx.adobe.com/security/products/flash-player/apsb16-10.html
- https://helpx.adobe.com/security/products/flash-player/apsb16-10.html
Modified: 2024-11-21
CVE-2016-1017
Use-after-free vulnerability in the LoadVars.decode function in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-1011, CVE-2016-1013, CVE-2016-1016, and CVE-2016-1031.
- SUSE-SU-2016:1305
- SUSE-SU-2016:1305
- openSUSE-SU-2016:1306
- openSUSE-SU-2016:1306
- RHSA-2016:0610
- RHSA-2016:0610
- 85926
- 85926
- 1035509
- 1035509
- http://www.zerodayinitiative.com/advisories/ZDI-16-225/
- http://www.zerodayinitiative.com/advisories/ZDI-16-225/
- MS16-050
- MS16-050
- https://helpx.adobe.com/security/products/flash-player/apsb16-10.html
- https://helpx.adobe.com/security/products/flash-player/apsb16-10.html
Modified: 2024-11-21
CVE-2016-1018
Stack-based buffer overflow in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code via crafted JPEG-XR data.
- SUSE-SU-2016:1305
- SUSE-SU-2016:1305
- openSUSE-SU-2016:1306
- openSUSE-SU-2016:1306
- RHSA-2016:0610
- RHSA-2016:0610
- 1035509
- 1035509
- http://www.zerodayinitiative.com/advisories/ZDI-16-228/
- http://www.zerodayinitiative.com/advisories/ZDI-16-228/
- MS16-050
- MS16-050
- https://helpx.adobe.com/security/products/flash-player/apsb16-10.html
- https://helpx.adobe.com/security/products/flash-player/apsb16-10.html
Modified: 2025-02-14
CVE-2016-1019
Adobe Flash Player 21.0.0.197 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unspecified vectors, as exploited in the wild in April 2016.
- http://blogs.adobe.com/psirt/?p=1330
- openSUSE-SU-2016:0987
- SUSE-SU-2016:0990
- openSUSE-SU-2016:0997
- openSUSE-SU-2016:1157
- SUSE-SU-2016:1305
- openSUSE-SU-2016:1306
- RHSA-2016:0610
- 85856
- 1035491
- MS16-050
- https://helpx.adobe.com/security/products/flash-player/apsa16-01.html
- https://helpx.adobe.com/security/products/flash-player/apsb16-10.html
- GLSA-201606-08
- https://www.fireeye.com/blog/threat-research/2016/04/cve-2016-1019_a_new.html
- http://blogs.adobe.com/psirt/?p=1330
- https://www.fireeye.com/blog/threat-research/2016/04/cve-2016-1019_a_new.html
- GLSA-201606-08
- https://helpx.adobe.com/security/products/flash-player/apsb16-10.html
- https://helpx.adobe.com/security/products/flash-player/apsa16-01.html
- MS16-050
- 1035491
- 85856
- RHSA-2016:0610
- openSUSE-SU-2016:1306
- SUSE-SU-2016:1305
- openSUSE-SU-2016:1157
- openSUSE-SU-2016:0997
- SUSE-SU-2016:0990
- openSUSE-SU-2016:0987
Modified: 2024-11-21
CVE-2016-1020
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1012, CVE-2016-1021, CVE-2016-1022, CVE-2016-1023, CVE-2016-1024, CVE-2016-1025, CVE-2016-1026, CVE-2016-1027, CVE-2016-1028, CVE-2016-1029, CVE-2016-1032, and CVE-2016-1033.
Modified: 2024-11-21
CVE-2016-1021
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1012, CVE-2016-1020, CVE-2016-1022, CVE-2016-1023, CVE-2016-1024, CVE-2016-1025, CVE-2016-1026, CVE-2016-1027, CVE-2016-1028, CVE-2016-1029, CVE-2016-1032, and CVE-2016-1033.
Modified: 2024-11-21
CVE-2016-1022
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1012, CVE-2016-1020, CVE-2016-1021, CVE-2016-1023, CVE-2016-1024, CVE-2016-1025, CVE-2016-1026, CVE-2016-1027, CVE-2016-1028, CVE-2016-1029, CVE-2016-1032, and CVE-2016-1033.
Modified: 2024-11-21
CVE-2016-1023
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1012, CVE-2016-1020, CVE-2016-1021, CVE-2016-1022, CVE-2016-1024, CVE-2016-1025, CVE-2016-1026, CVE-2016-1027, CVE-2016-1028, CVE-2016-1029, CVE-2016-1032, and CVE-2016-1033.
Modified: 2024-11-21
CVE-2016-1024
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1012, CVE-2016-1020, CVE-2016-1021, CVE-2016-1022, CVE-2016-1023, CVE-2016-1025, CVE-2016-1026, CVE-2016-1027, CVE-2016-1028, CVE-2016-1029, CVE-2016-1032, and CVE-2016-1033.
Modified: 2024-11-21
CVE-2016-1025
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1012, CVE-2016-1020, CVE-2016-1021, CVE-2016-1022, CVE-2016-1023, CVE-2016-1024, CVE-2016-1026, CVE-2016-1027, CVE-2016-1028, CVE-2016-1029, CVE-2016-1032, and CVE-2016-1033.
Modified: 2024-11-21
CVE-2016-1026
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1012, CVE-2016-1020, CVE-2016-1021, CVE-2016-1022, CVE-2016-1023, CVE-2016-1024, CVE-2016-1025, CVE-2016-1027, CVE-2016-1028, CVE-2016-1029, CVE-2016-1032, and CVE-2016-1033.
Modified: 2024-11-21
CVE-2016-1027
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1012, CVE-2016-1020, CVE-2016-1021, CVE-2016-1022, CVE-2016-1023, CVE-2016-1024, CVE-2016-1025, CVE-2016-1026, CVE-2016-1028, CVE-2016-1029, CVE-2016-1032, and CVE-2016-1033.
Modified: 2024-11-21
CVE-2016-1028
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1012, CVE-2016-1020, CVE-2016-1021, CVE-2016-1022, CVE-2016-1023, CVE-2016-1024, CVE-2016-1025, CVE-2016-1026, CVE-2016-1027, CVE-2016-1029, CVE-2016-1032, and CVE-2016-1033.
Modified: 2024-11-21
CVE-2016-1029
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1012, CVE-2016-1020, CVE-2016-1021, CVE-2016-1022, CVE-2016-1023, CVE-2016-1024, CVE-2016-1025, CVE-2016-1026, CVE-2016-1027, CVE-2016-1028, CVE-2016-1032, and CVE-2016-1033.
Modified: 2024-11-21
CVE-2016-1030
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to bypass intended access restrictions via unspecified vectors.
Modified: 2024-11-21
CVE-2016-1031
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-1011, CVE-2016-1013, CVE-2016-1016, and CVE-2016-1017.
Modified: 2024-11-21
CVE-2016-1032
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1012, CVE-2016-1020, CVE-2016-1021, CVE-2016-1022, CVE-2016-1023, CVE-2016-1024, CVE-2016-1025, CVE-2016-1026, CVE-2016-1027, CVE-2016-1028, CVE-2016-1029, and CVE-2016-1033.
Modified: 2024-11-21
CVE-2016-1033
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1012, CVE-2016-1020, CVE-2016-1021, CVE-2016-1022, CVE-2016-1023, CVE-2016-1024, CVE-2016-1025, CVE-2016-1026, CVE-2016-1027, CVE-2016-1028, CVE-2016-1029, and CVE-2016-1032.
Closed vulnerabilities
BDU:2019-00779
Уязвимость функции update_read_bitmap_update RDP-клиента FreeRDP, позволяющая нарушителю выполнить произвольный код
BDU:2019-03473
Уязвимость функции update_read_bitmap_update () RDP-клиента FreeRDP, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2019-03474
Уязвимость функции gdi_Bitmap_Decompress() RDP-клиента FreeRDP, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2019-03475
Уязвимость функции nsc_rle_decode() RDP-клиента FreeRDP, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2020-00623
Уязвимость модуля аутентификации NTLM RDP-клиента FreeRDP, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2020-00624
Уязвимость функции zgfx_decompress() RDP-клиента FreeRDP, позволяющая нарушителю выполнить произвольный код
BDU:2020-00625
Уязвимость функции zgfx_decompress_segment() RDP-клиента FreeRDP, позволяющая нарушителю выполнить произвольный код
Modified: 2024-11-21
CVE-2018-8784
FreeRDP prior to version 2.0.0-rc4 contains a Heap-Based Buffer Overflow in function zgfx_decompress_segment() that results in a memory corruption and probably even a remote code execution.
- 106938
- 106938
- https://github.com/FreeRDP/FreeRDP/commit/17c363a5162fd4dc77b1df54e48d7bd9bf6b3be7
- https://github.com/FreeRDP/FreeRDP/commit/17c363a5162fd4dc77b1df54e48d7bd9bf6b3be7
- https://research.checkpoint.com/reverse-rdp-attack-code-execution-on-rdp-clients/
- https://research.checkpoint.com/reverse-rdp-attack-code-execution-on-rdp-clients/
- USN-3845-1
- USN-3845-1
Modified: 2024-11-21
CVE-2018-8785
FreeRDP prior to version 2.0.0-rc4 contains a Heap-Based Buffer Overflow in function zgfx_decompress() that results in a memory corruption and probably even a remote code execution.
- 106938
- 106938
- https://github.com/FreeRDP/FreeRDP/commit/602f4a2e14b41703b5f431de3154cd46a5750a2d
- https://github.com/FreeRDP/FreeRDP/commit/602f4a2e14b41703b5f431de3154cd46a5750a2d
- https://research.checkpoint.com/reverse-rdp-attack-code-execution-on-rdp-clients/
- https://research.checkpoint.com/reverse-rdp-attack-code-execution-on-rdp-clients/
- USN-3845-1
- USN-3845-1
Modified: 2024-11-21
CVE-2018-8786
FreeRDP prior to version 2.0.0-rc4 contains an Integer Truncation that leads to a Heap-Based Buffer Overflow in function update_read_bitmap_update() and results in a memory corruption and probably even a remote code execution.
- 106938
- 106938
- RHSA-2019:0697
- RHSA-2019:0697
- https://github.com/FreeRDP/FreeRDP/commit/445a5a42c500ceb80f8fa7f2c11f3682538033f3
- https://github.com/FreeRDP/FreeRDP/commit/445a5a42c500ceb80f8fa7f2c11f3682538033f3
- [debian-lts-announce] 20190209 [SECURITY] [DLA 1666-1] freerdp security update
- [debian-lts-announce] 20190209 [SECURITY] [DLA 1666-1] freerdp security update
- FEDORA-2019-b2d986c3e9
- FEDORA-2019-b2d986c3e9
- https://research.checkpoint.com/reverse-rdp-attack-code-execution-on-rdp-clients/
- https://research.checkpoint.com/reverse-rdp-attack-code-execution-on-rdp-clients/
- USN-3845-1
- USN-3845-1
- USN-3845-2
- USN-3845-2
Modified: 2024-11-21
CVE-2018-8787
FreeRDP prior to version 2.0.0-rc4 contains an Integer Overflow that leads to a Heap-Based Buffer Overflow in function gdi_Bitmap_Decompress() and results in a memory corruption and probably even a remote code execution.
- 106938
- 106938
- RHSA-2019:0697
- RHSA-2019:0697
- https://github.com/FreeRDP/FreeRDP/commit/09b9d4f1994a674c4ec85b4947aa656eda1aed8a
- https://github.com/FreeRDP/FreeRDP/commit/09b9d4f1994a674c4ec85b4947aa656eda1aed8a
- [debian-lts-announce] 20190209 [SECURITY] [DLA 1666-1] freerdp security update
- [debian-lts-announce] 20190209 [SECURITY] [DLA 1666-1] freerdp security update
- https://research.checkpoint.com/reverse-rdp-attack-code-execution-on-rdp-clients/
- https://research.checkpoint.com/reverse-rdp-attack-code-execution-on-rdp-clients/
- USN-3845-1
- USN-3845-1
- USN-3845-2
- USN-3845-2
Modified: 2024-11-21
CVE-2018-8788
FreeRDP prior to version 2.0.0-rc4 contains an Out-Of-Bounds Write of up to 4 bytes in function nsc_rle_decode() that results in a memory corruption and possibly even a remote code execution.
- 106938
- 106938
- RHSA-2019:0697
- RHSA-2019:0697
- https://github.com/FreeRDP/FreeRDP/commit/d1112c279bd1a327e8e4d0b5f371458bf2579659
- https://github.com/FreeRDP/FreeRDP/commit/d1112c279bd1a327e8e4d0b5f371458bf2579659
- [debian-lts-announce] 20190209 [SECURITY] [DLA 1666-1] freerdp security update
- [debian-lts-announce] 20190209 [SECURITY] [DLA 1666-1] freerdp security update
- https://research.checkpoint.com/reverse-rdp-attack-code-execution-on-rdp-clients/
- https://research.checkpoint.com/reverse-rdp-attack-code-execution-on-rdp-clients/
- USN-3845-1
- USN-3845-1
- USN-3845-2
- USN-3845-2
Modified: 2024-11-21
CVE-2018-8789
FreeRDP prior to version 2.0.0-rc4 contains several Out-Of-Bounds Reads in the NTLM Authentication module that results in a Denial of Service (segfault).
- 106938
- 106938
- https://github.com/FreeRDP/FreeRDP/commit/2ee663f39dc8dac3d9988e847db19b2d7e3ac8c6
- https://github.com/FreeRDP/FreeRDP/commit/2ee663f39dc8dac3d9988e847db19b2d7e3ac8c6
- [debian-lts-announce] 20190209 [SECURITY] [DLA 1666-1] freerdp security update
- [debian-lts-announce] 20190209 [SECURITY] [DLA 1666-1] freerdp security update
- https://research.checkpoint.com/reverse-rdp-attack-code-execution-on-rdp-clients/
- https://research.checkpoint.com/reverse-rdp-attack-code-execution-on-rdp-clients/
- USN-3845-1
- USN-3845-1
- USN-3845-2
- USN-3845-2
Modified: 2024-11-21
CVE-2020-11045
In FreeRDP after 1.0 and before 2.0.0, there is an out-of-bound read in in update_read_bitmap_data that allows client memory to be read to an image buffer. The result displayed on screen as colour.
- https://github.com/FreeRDP/FreeRDP/commit/f8890a645c221823ac133dbf991f8a65ae50d637
- https://github.com/FreeRDP/FreeRDP/issues/6005
- https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-3x39-248q-f4q6
- [debian-lts-announce] 20200829 [SECURITY] [DLA 2356-1] freerdp security update
- [debian-lts-announce] 20231007 [SECURITY] [DLA 3606-1] freerdp2 security update
- USN-4379-1
- USN-4382-1
- https://github.com/FreeRDP/FreeRDP/commit/f8890a645c221823ac133dbf991f8a65ae50d637
- USN-4382-1
- USN-4379-1
- [debian-lts-announce] 20231007 [SECURITY] [DLA 3606-1] freerdp2 security update
- [debian-lts-announce] 20200829 [SECURITY] [DLA 2356-1] freerdp security update
- https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-3x39-248q-f4q6
- https://github.com/FreeRDP/FreeRDP/issues/6005
Modified: 2024-11-21
CVE-2020-11046
In FreeRDP after 1.0 and before 2.0.0, there is a stream out-of-bounds seek in update_read_synchronize that could lead to a later out-of-bounds read.
- https://github.com/FreeRDP/FreeRDP/commit/ed53cd148f43cbab905eaa0f5308c2bf3c48cc37
- https://github.com/FreeRDP/FreeRDP/issues/6006
- https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-hx48-wmmm-mr5q
- [debian-lts-announce] 20200829 [SECURITY] [DLA 2356-1] freerdp security update
- [debian-lts-announce] 20231007 [SECURITY] [DLA 3606-1] freerdp2 security update
- USN-4379-1
- USN-4382-1
- https://github.com/FreeRDP/FreeRDP/commit/ed53cd148f43cbab905eaa0f5308c2bf3c48cc37
- USN-4382-1
- USN-4379-1
- [debian-lts-announce] 20231007 [SECURITY] [DLA 3606-1] freerdp2 security update
- [debian-lts-announce] 20200829 [SECURITY] [DLA 2356-1] freerdp security update
- https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-hx48-wmmm-mr5q
- https://github.com/FreeRDP/FreeRDP/issues/6006
Modified: 2024-11-21
CVE-2020-11048
In FreeRDP after 1.0 and before 2.0.0, there is an out-of-bounds read. It only allows to abort a session. No data extraction is possible. This has been fixed in 2.0.0.
- https://github.com/FreeRDP/FreeRDP/commit/9301bfe730c66180263248b74353daa99f5a969b
- https://github.com/FreeRDP/FreeRDP/issues/6007
- https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-hv8w-f2hx-5gcv
- [debian-lts-announce] 20200829 [SECURITY] [DLA 2356-1] freerdp security update
- [debian-lts-announce] 20231007 [SECURITY] [DLA 3606-1] freerdp2 security update
- USN-4379-1
- USN-4382-1
- https://github.com/FreeRDP/FreeRDP/commit/9301bfe730c66180263248b74353daa99f5a969b
- USN-4382-1
- USN-4379-1
- [debian-lts-announce] 20231007 [SECURITY] [DLA 3606-1] freerdp2 security update
- [debian-lts-announce] 20200829 [SECURITY] [DLA 2356-1] freerdp security update
- https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-hv8w-f2hx-5gcv
- https://github.com/FreeRDP/FreeRDP/issues/6007
Closed bugs
Зависимости на tesseract