关键漏洞信息: Package: freerdp Version: 1.1.0-git20140921.1.440916e+dfsg1-13+deb9u4 CVE IDs: - CVE-2014-0791: Integer overflow in function - CVE-2020-11042: Out-of-bounds read in - CVE-2020-11045: Out-of-bounds read in - CVE-2020-11046: Stream out-of-bounds seek in - CVE-2020-11048: Out-of-bounds read in FreeRDP - CVE-2020-11058: Stream out-of-bounds seek in - CVE-2020-11521: Out-of-bounds Write in - CVE-2020-11522: Out-of-bounds Read in - CVE-2020-11523: Integer Overflow in - CVE-2020-11525: Out-of-bounds Read in - CVE-2020-11526: Out-of-bounds Read in - CVE-2020-13396: Out-of-bounds read in - CVE-2020-13397: Out-of-bounds read in - CVE-2020-13398: Out-of-bounds write in Impact: - Potential denial of service (application crash) - Possible unspecified impact via large ScopeCount value - Could be used to crash client or store information for later retrieval Recommendation: - Upgrade to version 1.1.0-git20140921.1.440916e+dfsg1-13+deb9u4 References: - Security Tracker: - Debian LTS: