FreeRDP is a free remote desktop... CVE-2022-39317

- AV AC AU C I A
发布: 2022-11-16
修订: 2024-11-21

FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are missing a range check for input offset index in ZGFX decoder. A malicious server can trick a FreeRDP based client to read out of bound data and try to decode it. This issue has been addressed in version 2.9.0. There are no known workarounds for this issue.

0%
暂无可用Exp或PoC
当前有3条受影响产品信息