FreeRDP prior to version 2.0.0-rc4 contains a Heap-Based Buffer Overflow in function zgfx_decompress() that results in a memory corruption and probably even a remote code execution.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: checkpoint

Published: 2018-11-29T17:00:00Z

Updated: 2024-09-16T20:22:24.986Z

Reserved: 2018-03-19T00:00:00

Link: CVE-2018-8785

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2018-11-29T18:29:00.850

Modified: 2020-09-29T15:08:37.443

Link: CVE-2018-8785

cve-icon Redhat

Severity : Moderate

Publid Date: 2018-10-22T00:00:00Z

Links: CVE-2018-8785 - Bugzilla