{"id":"SUSE-SU-2020:2272-1","summary":"Security update for freerdp","details":"This update for freerdp fixes the following issues:\n\nfreerdp was updated to version 2.1.2 (bsc#1171441,bsc#1173247 and jsc#ECO-2006):\n\n- CVE-2020-11017: Fixed a double free which could have denied the server's service.\n- CVE-2020-11018: Fixed an out of bounds read which a malicious clients could have triggered.\n- CVE-2020-11019: Fixed an issue which could have led to denial of service if logger was set to 'WLOG_TRACE'.\n- CVE-2020-11038: Fixed a buffer overflow when /video redirection was used.\n- CVE-2020-11039: Fixed an issue which could have allowed arbitrary memory read and write when USB redirection was enabled.\n- CVE-2020-11040: Fixed an out of bounds data read in clear_decompress_subcode_rlex.\n- CVE-2020-11041: Fixed an issue with the configuration for sound backend which could have led to server's denial of service.\n- CVE-2020-11043: Fixed an out of bounds read in rfx_process_message_tileset.\n- CVE-2020-11085: Fixed an out of bounds read in cliprdr_read_format_list.\n- CVE-2020-11086: Fixed an out of bounds read in ntlm_read_ntlm_v2_client_challenge.\n- CVE-2020-11087: Fixed an out of bounds read in ntlm_read_AuthenticateMessage.\n- CVE-2020-11088: Fixed an out of bounds read in ntlm_read_NegotiateMessage.\n- CVE-2020-11089: Fixed an out of bounds read in irp function family.\n- CVE-2020-11095: Fixed a global out of bounds read in update_recv_primary_order.\n- CVE-2020-11096: Fixed a global out of bounds read in update_read_cache_bitmap_v3_order.\n- CVE-2020-11097: Fixed an out of bounds read in ntlm_av_pair_get.\n- CVE-2020-11098: Fixed an out of bounds read in glyph_cache_put.\n- CVE-2020-11099: Fixed an out of bounds Read in license_read_new_or_upgrade_license_packet.\n- CVE-2020-11521: Fixed an out of bounds write in planar.c (bsc#1171443).\n- CVE-2020-11522: Fixed an out of bounds read in gdi.c (bsc#1171444).\n- CVE-2020-11523: Fixed an integer overflow in region.c (bsc#1171445).\n- CVE-2020-11524: Fixed an out of bounds write in interleaved.c (bsc#1171446).\n- CVE-2020-11525: Fixed an out of bounds read in bitmap.c (bsc#1171447).\n- CVE-2020-11526: Fixed an out of bounds read in update_recv_secondary_order (bsc#1171674).\n- CVE-2020-13396: Fixed an Read in ntlm_read_ChallengeMessage.\n- CVE-2020-13397: Fixed an out of bounds read in security_fips_decrypt due to uninitialized value.\n- CVE-2020-13398: Fixed an out of bounds write in crypto_rsa_common.\n- CVE-2020-4030: Fixed an out of bounds read in `TrioParse`.\n- CVE-2020-4031: Fixed a use after free in gdi_SelectObject.\n- CVE-2020-4032: Fixed an integer casting in `update_recv_secondary_order`.\n- CVE-2020-4033: Fixed an out of bound read in RLEDECOMPRESS.\n- Fixed an issue where freerdp failed with -fno-common (bsc#1169748).\n- Fixed an issue where USB redirection with FreeRDP was not working (bsc#1169679).\n- Fixed an issue where freerdp could not start (bsc#1129193).\n- Fixed an issue where copy and paste between remote host was transforming text to chinese (bsc#1004108).\n- Added pulse support (bsc#1090677).\n\nAdditionally, the following issue was fixed:\n\n- CVE-2020-15103: Fix integer overflow due to missing input sanitation in rdpegfx channel (bsc#1174321).\n","modified":"2026-03-11T07:14:57.666869Z","published":"2020-08-18T14:44:51Z","related":["CVE-2017-2834","CVE-2017-2835","CVE-2017-2836","CVE-2017-2837","CVE-2017-2838","CVE-2017-2839","CVE-2018-0886","CVE-2018-1000852","CVE-2018-8784","CVE-2018-8785","CVE-2018-8786","CVE-2018-8787","CVE-2018-8788","CVE-2018-8789","CVE-2020-11017","CVE-2020-11018","CVE-2020-11019","CVE-2020-11038","CVE-2020-11039","CVE-2020-11040","CVE-2020-11041","CVE-2020-11043","CVE-2020-11085","CVE-2020-11086","CVE-2020-11087","CVE-2020-11088","CVE-2020-11089","CVE-2020-11095","CVE-2020-11096","CVE-2020-11097","CVE-2020-11098","CVE-2020-11099","CVE-2020-11521","CVE-2020-11522","CVE-2020-11523","CVE-2020-11524","CVE-2020-11525","CVE-2020-11526","CVE-2020-13396","CVE-2020-13397","CVE-2020-13398","CVE-2020-15103","CVE-2020-4030","CVE-2020-4031","CVE-2020-4032","CVE-2020-4033"],"upstream":["CVE-2017-2834","CVE-2017-2835","CVE-2017-2836","CVE-2017-2837","CVE-2017-2838","CVE-2017-2839","CVE-2018-0886","CVE-2018-1000852","CVE-2018-8784","CVE-2018-8785","CVE-2018-8786","CVE-2018-8787","CVE-2018-8788","CVE-2018-8789","CVE-2020-11017","CVE-2020-11018","CVE-2020-11019","CVE-2020-11038","CVE-2020-11039","CVE-2020-11040","CVE-2020-11041","CVE-2020-11043","CVE-2020-11085","CVE-2020-11086","CVE-2020-11087","CVE-2020-11088","CVE-2020-11089","CVE-2020-11095","CVE-2020-11096","CVE-2020-11097","CVE-2020-11098","CVE-2020-11099","CVE-2020-11521","CVE-2020-11522","CVE-2020-11523","CVE-2020-11524","CVE-2020-11525","CVE-2020-11526","CVE-2020-13396","CVE-2020-13397","CVE-2020-13398","CVE-2020-15103","CVE-2020-4030","CVE-2020-4031","CVE-2020-4032","CVE-2020-4033"],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2020/suse-su-20202272-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1004108"},{"type":"REPORT","url":"https://bugzilla.suse.com/1050699"},{"type":"REPORT","url":"https://bugzilla.suse.com/1050704"},{"type":"REPORT","url":"https://bugzilla.suse.com/1050708"},{"type":"REPORT","url":"https://bugzilla.suse.com/1050711"},{"type":"REPORT","url":"https://bugzilla.suse.com/1050712"},{"type":"REPORT","url":"https://bugzilla.suse.com/1050714"},{"type":"REPORT","url":"https://bugzilla.suse.com/1085416"},{"type":"REPORT","url":"https://bugzilla.suse.com/1087240"},{"type":"REPORT","url":"https://bugzilla.suse.com/1090677"},{"type":"REPORT","url":"https://bugzilla.suse.com/1103557"},{"type":"REPORT","url":"https://bugzilla.suse.com/1104918"},{"type":"REPORT","url":"https://bugzilla.suse.com/1112028"},{"type":"REPORT","url":"https://bugzilla.suse.com/1116708"},{"type":"REPORT","url":"https://bugzilla.suse.com/1117963"},{"type":"REPORT","url":"https://bugzilla.suse.com/1117964"},{"type":"REPORT","url":"https://bugzilla.suse.com/1117965"},{"type":"REPORT","url":"https://bugzilla.suse.com/1117966"},{"type":"REPORT","url":"https://bugzilla.suse.com/1117967"},{"type":"REPORT","url":"https://bugzilla.suse.com/1120507"},{"type":"REPORT","url":"https://bugzilla.suse.com/1129193"},{"type":"REPORT","url":"https://bugzilla.suse.com/1169679"},{"type":"REPORT","url":"https://bugzilla.suse.com/1169748"},{"type":"REPORT","url":"https://bugzilla.suse.com/1171441"},{"type":"REPORT","url":"https://bugzilla.suse.com/1171443"},{"type":"REPORT","url":"https://bugzilla.suse.com/1171444"},{"type":"REPORT","url":"https://bugzilla.suse.com/1171445"},{"type":"REPORT","url":"https://bugzilla.suse.com/1171446"},{"type":"REPORT","url":"https://bugzilla.suse.com/1171447"},{"type":"REPORT","url":"https://bugzilla.suse.com/1171674"},{"type":"REPORT","url":"https://bugzilla.suse.com/1173247"},{"type":"REPORT","url":"https://bugzilla.suse.com/1173605"},{"type":"REPORT","url":"https://bugzilla.suse.com/1174200"},{"type":"REPORT","url":"https://bugzilla.suse.com/1174321"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2017-2834"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2017-2835"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2017-2836"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2017-2837"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2017-2838"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2017-2839"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-0886"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-1000852"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-8784"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-8785"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-8786"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-8787"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-8788"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-8789"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11017"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11018"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11019"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11038"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11039"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11040"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11041"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11043"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11085"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11086"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11087"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11088"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11089"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11095"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11096"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11097"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11098"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11099"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11521"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11522"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11523"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11524"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11525"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-11526"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-13396"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-13397"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-13398"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-15103"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-4030"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-4031"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-4032"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-4033"}],"affected":[{"package":{"name":"freerdp","ecosystem":"SUSE:Linux Enterprise Software Development Kit 12 SP5","purl":"pkg:rpm/suse/freerdp&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.1.2-12.20.1"}]}],"ecosystem_specific":{"binaries":[{"freerdp-devel":"2.1.2-12.20.1","libfreerdp2":"2.1.2-12.20.1","libwinpr2":"2.1.2-12.20.1","winpr2-devel":"2.1.2-12.20.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:2272-1.json"}},{"package":{"name":"freerdp","ecosystem":"SUSE:Linux Enterprise Workstation Extension 12 SP5","purl":"pkg:rpm/suse/freerdp&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.1.2-12.20.1"}]}],"ecosystem_specific":{"binaries":[{"libfreerdp2":"2.1.2-12.20.1","libwinpr2":"2.1.2-12.20.1","vinagre-lang":"3.20.2-16.3.3","vinagre":"3.20.2-16.3.3","freerdp-proxy":"2.1.2-12.20.1","freerdp-server":"2.1.2-12.20.1","freerdp":"2.1.2-12.20.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:2272-1.json"}},{"package":{"name":"vinagre","ecosystem":"SUSE:Linux Enterprise Workstation Extension 12 SP5","purl":"pkg:rpm/suse/vinagre&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.20.2-16.3.3"}]}],"ecosystem_specific":{"binaries":[{"libfreerdp2":"2.1.2-12.20.1","libwinpr2":"2.1.2-12.20.1","vinagre-lang":"3.20.2-16.3.3","vinagre":"3.20.2-16.3.3","freerdp-proxy":"2.1.2-12.20.1","freerdp-server":"2.1.2-12.20.1","freerdp":"2.1.2-12.20.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:2272-1.json"}}],"schema_version":"1.7.5"}