Multiple integer overflows in client/X11/xf_graphics.c in FreeRDP allow remote attackers to have an unspecified impact via the width and height to the (1) xf_Pointer_New or (2) xf_Bitmap_Decompress function, which causes an incorrect amount of memory to be allocated.
2014-11-16T17:59:01.720
2025-04-12T10:46:40.837
Deferred
CVSSv2: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | freerdp | freerdp | 1.0.0 | Yes |
| Application | freerdp | freerdp | 1.0.1 | Yes |
| Application | freerdp | freerdp | 1.0.2 | Yes |
| Operating System | opensuse | opensuse | 12.3 | Yes |
| Operating System | opensuse | opensuse | 13.1 | Yes |