DescriptionFreeRDP prior to version 2.0.0-rc4 contains a Heap-Based Buffer Overflow in function zgfx_decompress_segment() that results in a memory corruption and probably even a remote code execution.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, Mageia, GitHub code/issues, web search, more)
NVD severityhigh

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
freerdp (PTS)stretch1.1.0~git20140921.1.440916e+dfsg1-13+deb9u3fixed
stretch (security)1.1.0~git20140921.1.440916e+dfsg1-13+deb9u4fixed
freerdp2 (PTS)buster2.0.0~git20190204.1.2693389a+dfsg1-1+deb10u2fixed
bullseye, sid2.3.0+dfsg1-2fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
freerdpsourcejessie(not affected)
freerdpsourcestretch(not affected)


[stretch] - freerdp <not-affected> (Vulnerable code not present, zgfx not yet supported)
[jessie] - freerdp <not-affected> (Vulnerable code not present, zgfx not yet supported)

Search for package or bug name: Reporting problems