6.8
CVSSv2

CVE-2014-0791

Published: 03/01/2014 Updated: 30/08/2020
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Integer overflow in the license_read_scope_list function in libfreerdp/core/license.c in FreeRDP up to and including 1.0.2 allows remote RDP servers to cause a denial of service (application crash) or possibly have unspecified other impact via a large ScopeCount value in a Scope List in a Server License Request packet.

Vulnerable Product Search on Vulmon Subscribe to Product

freerdp freerdp 1.0.0

freerdp freerdp 1.0.1

freerdp freerdp 1.0.2

Vendor Advisories

Several security issues were fixed in FreeRDP ...
Integer overflow in the license_read_scope_list function in libfreerdp/core/licensec in FreeRDP through 102 allows remote RDP servers to cause a denial of service (application crash) or possibly have unspecified other impact via a large ScopeCount value in a Scope List in a Server License Request packet ...