Rapid7 Vulnerability & Exploit Database

Red Hat: CVE-2021-41160: improper region checks in all clients allow out of bound write to memory (Multiple Advisories)

Free InsightVM Trial No Credit Card Necessary
Watch Demo See how it all works
Back to Search

Red Hat: CVE-2021-41160: improper region checks in all clients allow out of bound write to memory (Multiple Advisories)

Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
11/11/2021
Created
11/13/2021
Added
11/12/2021
Modified
12/15/2023

Description

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. In affected versions a malicious server might trigger out of bound writes in a connected client. Connections using GDI or SurfaceCommands to send graphics updates to the client might send `0` width/height or out of bound rectangles to trigger out of bound writes. With `0` width or heigth the memory allocation will be `0` but the missing bounds checks allow writing to the pointer at this (not allocated) region. This issue has been patched in FreeRDP 2.4.1.

Solution(s)

  • redhat-upgrade-freerdp
  • redhat-upgrade-freerdp-debuginfo
  • redhat-upgrade-freerdp-debugsource
  • redhat-upgrade-freerdp-devel
  • redhat-upgrade-freerdp-libs
  • redhat-upgrade-freerdp-libs-debuginfo
  • redhat-upgrade-libwinpr
  • redhat-upgrade-libwinpr-debuginfo
  • redhat-upgrade-libwinpr-devel

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;