CVE-2017-2838
24.04.2018, 19:29
An exploitable denial of service vulnerability exists within the handling of challenge packets in FreeRDP 2.0.0-beta1+android11. A specially crafted challenge packet can cause the program termination leading to a denial of service condition. An attacker can compromise the server or use man in the middle to trigger this vulnerability.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| freerdp | freerdp | 2.0.0:beta1 |
| debian | debian_linux | 8.0 |
| debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| freerdp |
| ||||||||||||||||||||||
| freerdp-devel |
| ||||||||||||||||||||||
| freerdp-proxy |
| ||||||||||||||||||||||
| freerdp-server |
| ||||||||||||||||||||||
| libfreerdp2 |
| ||||||||||||||||||||||
| libwinpr2 |
| ||||||||||||||||||||||
| vinagre |
| ||||||||||||||||||||||
| vinagre-lang |
| ||||||||||||||||||||||
| winpr2-devel |
|
References