Oval Definition:oval:com.redhat.rhsa:def:20204647
Revision Date:2020-11-04Version:640
Title:RHSA-2020:4647: freerdp and vinagre security, bug fix, and enhancement update (Moderate)
Description:FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. The xfreerdp client can connect to RDP servers such as Microsoft Windows machines, xrdp, and VirtualBox.

The vinagre packages provide the Vinagre remote desktop viewer for the GNOME desktop.

  • The following packages have been upgraded to a later upstream version: freerdp (2.1.1). (BZ#1834287)

    Security Fix(es):

  • freerdp: Out of bound read in cliprdr_server_receive_capabilities (CVE-2020-11018)

  • freerdp: Out of bound read/write in usb redirection channel (CVE-2020-11039)

  • freerdp: out-of-bounds read in update_read_icon_info function (CVE-2020-11042)

  • freerdp: out-of-bounds read in autodetect_recv_bandwidth_measure_results function (CVE-2020-11047)

  • freerdp: Out-of-bounds read in ntlm_read_ChallengeMessage in winpr/libwinpr/sspi/NTLM/ntlm_message.c. (CVE-2020-13396)

  • freerdp: Out-of-bounds read in security_fips_decrypt in libfreerdp/core/security.c (CVE-2020-13397)

  • freerdp: Out of bound read in update_recv could result in a crash (CVE-2020-11019)

  • freerdp: Integer overflow in VIDEO channel (CVE-2020-11038)

  • freerdp: Out of bound access in clear_decompress_subcode_rlex (CVE-2020-11040)

  • freerdp: Unchecked read of array offset in rdpsnd_recv_wave2_pdu (CVE-2020-11041)

  • freerdp: out of bound read in rfx_process_message_tileset (CVE-2020-11043)

  • freerdp: double free in update_read_cache_bitmap_v3_order function (CVE-2020-11044)

  • freerdp: out of bounds read in update_read_bitmap_data function (CVE-2020-11045)

  • freerdp: out of bounds seek in update_read_synchronize function could lead out of bounds read (CVE-2020-11046)

  • freerdp: out-of-bounds read could result in aborting the session (CVE-2020-11048)

  • freerdp: out-of-bound read of client memory that is then passed on to the protocol parser (CVE-2020-11049)

  • freerdp: stream out-of-bounds seek in rdp_read_font_capability_set could lead to out-of-bounds read (CVE-2020-11058)

  • freerdp: out-of-bounds read in cliprdr_read_format_list function (CVE-2020-11085)

  • freerdp: out-of-bounds read in ntlm_read_ntlm_v2_client_challenge function (CVE-2020-11086)

  • freerdp: out-of-bounds read in ntlm_read_AuthenticateMessage (CVE-2020-11087)

  • freerdp: out-of-bounds read in ntlm_read_NegotiateMessage (CVE-2020-11088)

  • freerdp: out-of-bounds read in irp functions (CVE-2020-11089)

  • freerdp: out-of-bounds read in gdi.c (CVE-2020-11522)

  • freerdp: out-of-bounds read in bitmap.c (CVE-2020-11525)

  • freerdp: Stream pointer out of bounds in update_recv_secondary_order could lead out of bounds read later (CVE-2020-11526)

    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

    Additional Changes:

    For detailed information on changes in this release, see the Red Hat Enterprise Linux 8.3 Release Notes linked from the References section.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2020-11018
    CVE-2020-11019
    CVE-2020-11038
    CVE-2020-11039
    CVE-2020-11040
    CVE-2020-11041
    CVE-2020-11042
    CVE-2020-11043
    CVE-2020-11044
    CVE-2020-11045
    CVE-2020-11046
    CVE-2020-11047
    CVE-2020-11048
    CVE-2020-11049
    CVE-2020-11058
    CVE-2020-11085
    CVE-2020-11086
    CVE-2020-11087
    CVE-2020-11088
    CVE-2020-11089
    CVE-2020-11522
    CVE-2020-11525
    CVE-2020-11526
    CVE-2020-13396
    CVE-2020-13397
    RHSA-2020:4647
    Platform(s):Red Hat Enterprise Linux 8
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 8 is installed
  • OR Red Hat CoreOS 4 is installed
  • AND
  • freerdp is earlier than 2:2.1.1-1.el8
  • AND freerdp is signed with Red Hat redhatrelease2 key
  • freerdp-devel is earlier than 2:2.1.1-1.el8
  • AND freerdp-devel is signed with Red Hat redhatrelease2 key
  • freerdp-libs is earlier than 2:2.1.1-1.el8
  • AND freerdp-libs is signed with Red Hat redhatrelease2 key
  • libwinpr is earlier than 2:2.1.1-1.el8
  • AND libwinpr is signed with Red Hat redhatrelease2 key
  • libwinpr-devel is earlier than 2:2.1.1-1.el8
  • AND libwinpr-devel is signed with Red Hat redhatrelease2 key
  • vinagre is earlier than 0:3.22.0-23.el8
  • AND vinagre is signed with Red Hat redhatrelease2 key
  • BACK