7.5
CVSSv2

CVE-2014-0250

Published: 16/11/2014 Updated: 06/03/2020
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple integer overflows in client/X11/xf_graphics.c in FreeRDP allow remote malicious users to have an unspecified impact via the width and height to the (1) xf_Pointer_New or (2) xf_Bitmap_Decompress function, which causes an incorrect amount of memory to be allocated.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

freerdp freerdp 1.0.0

freerdp freerdp 1.0.1

freerdp freerdp 1.0.2

opensuse opensuse 12.3

opensuse opensuse 13.1

Vendor Advisories

Debian Bug report logs - #749585 freerdp: CVE-2014-0250: integer overflows in xf_graphicsc Package: freerdp; Maintainer for freerdp is Debian Remote Maintainers <pkg-remote-team@listsaliothdebianorg>; Reported by: Henri Salo <henri@nervfi> Date: Wed, 28 May 2014 11:36:01 UTC Severity: important Tags: security F ...
Several security issues were fixed in FreeRDP ...
Multiple integer overflows in client/X11/xf_graphicsc in FreeRDP allow remote attackers to have an unspecified impact via the width and height to the (1) xf_Pointer_New or (2) xf_Bitmap_Decompress function, which causes an incorrect amount of memory to be allocated ...