libfreerdp/codec/region.c in FreeRDP through 1.1.x and 2.x through 2.0.0-rc4 has memory leaks because a supplied realloc pointer (i.e., the first argument to realloc) is also used for a realloc return value.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade freerdp2 | Jul 30, 2024 | Oct 4, 2019 |
| Gentoo Linux | — | Upgrade net-misc/freerdp. | Jun 15, 2020 | Oct 4, 2019 |
| Huawei Euleros 2_0_sp8 | — | Upgrade freerdp-libsUpgrade libwinprUpgrade freerdp | Aug 31, 2020 | Oct 4, 2019 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Oct 4, 2019 |
| Suse | — | Upgrade libwinpr2Upgrade uwac0-0-develUpgrade freerdp-develUpgrade freerdpUpgrade freerdp-waylandUpgrade freerdp-serverUpgrade libfreerdp2Upgrade libuwac0-0Upgrade winpr2-devel | Nov 27, 2019 | Oct 4, 2019 |
| Ubuntu | — | Upgrade libfreerdp2-2Upgrade libfreerdp-server2-2Upgrade libfreerdp-client2-2 | Jun 2, 2020 | Oct 4, 2019 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub