Description
FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Versions of FreeRDP on the 3.x release branch before beta3 are subject to a Use-After-Free in processing `RDPGFX_CMDID_RESETGRAPHICS` packets. If `context->maxPlaneSize` is 0, `context->planesBuffer` will be freed. However, without updating `context->planesBuffer`, this leads to a Use-After-Free exploit vector. In most environments this should only result in a crash. This issue has been addressed in version 3.0.0-beta3 and users of the beta 3.x releases are advised to upgrade. There are no known workarounds for this vulnerability.
Published: 2023-08-31
Score: 7 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DLA Debian DLA DLA-3606-1 freerdp2 security update
Debian DLA Debian DLA DLA-4053-1 freerdp2 security update
EUVD EUVD EUVD-2023-43081 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Versions of FreeRDP on the 3.x release branch before beta3 are subject to a Use-After-Free in processing `RDPGFX_CMDID_RESETGRAPHICS` packets. If `context->maxPlaneSize` is 0, `context->planesBuffer` will be freed. However, without updating `context->planesBuffer`, this leads to a Use-After-Free exploit vector. In most environments this should only result in a crash. This issue has been addressed in version 3.0.0-beta3 and users of the beta 3.x releases are advised to upgrade. There are no known workarounds for this vulnerability.
History

Tue, 15 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.003}

epss

{'score': 0.00277}


Mon, 14 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00252}

epss

{'score': 0.003}


Subscriptions

Debian Debian Linux
Freerdp Freerdp
cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2025-02-13T17:02:55.875Z

Reserved: 2023-07-28T13:26:46.479Z

Link: CVE-2023-39355

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-08-31T20:15:08.457

Modified: 2024-11-21T08:15:13.520

Link: CVE-2023-39355

cve-icon Redhat

Severity : Moderate

Publid Date: 2023-08-31T00:00:00Z

Links: CVE-2023-39355 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses