CVE-2020-4031

EUVD-2020-25296
In FreeRDP before version 2.1.2, there is a use-after-free in gdi_SelectObject. All FreeRDP clients using compatibility mode with /relax-order-checks are affected. This is fixed in version 2.1.2.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
3.5 LOW
NETWORK
HIGH
LOW
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:N/I:L/A:N
GitHub_MCNA
3.5 LOW
NETWORK
HIGH
LOW
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:N/I:L/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 56%
Affected Products (NVD)
VendorProductVersion
freerdpfreerdp
𝑥
< 2.1.2
opensuseleap
15.1
canonicalubuntu_linux
18.04
canonicalubuntu_linux
20.04
debiandebian_linux
10.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
freerdp2
bookworm
2.10.0+dfsg1-1
fixed
bullseye
2.3.0+dfsg1-2+deb11u1
fixed
sid
2.11.7+dfsg1-4
fixed
trixie
2.11.7+dfsg1-4
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
freerdp
bionic
not-affected
eoan
dne
focal
dne
trusty
dne
xenial
not-affected
freerdp2
bionic
Fixed 2.2.0+dfsg1-0ubuntu0.18.04.1
released
eoan
ignored
focal
Fixed 2.2.0+dfsg1-0ubuntu0.20.04.1
released
trusty
dne
xenial
dne