ZeroHour

CVE-2020-11018

CVSS 3.1
6.5 medium
EPSS
2%p78
Published
()
Modified
Description

In FreeRDP less than or equal to 2.0.0, a possible resource exhaustion vulnerability can be performed. Malicious clients could trigger out of bound reads causing memory allocation with random size. This has been fixed in 2.1.0.

Vendors
freerdpopensusedebian
Products
freerdp, leap, debian linux
Weakness
CWE-125
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.