FreeRDP是FreeRDP团队的一款开源的远程桌面协议(RDP)的实现。 FreeRDP 3.5.0 版本之前存在安全漏洞,该漏洞源于基于 FreeRDP 的客户端容易受到越界读取的影响。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2024-32459 | 9.8 CRITICAL | FreeRDP Out-Of-Bounds Read in ncrush_decompress |
| CVE-2024-32041 | 9.8 CRITICAL | FreeRDP OutOfBound Read in zgfx_decompress_segment |
| CVE-2024-32039 | 9.8 CRITICAL | FreeRDP Integer overflow & OutOfBound Write in clear_decompress_residual_data |
| CVE-2024-32460 | 8.1 HIGH | FreeRDP Out-Of-Bounds Read in interleaved_decompress |
| CVE-2024-32040 | 8.1 HIGH | FreeRDP vulnerable to integer underflow in nsc_rle_decode |
No comments yet