CVE-2023-40181: Integer-Underflow leading to Out-Of-Bound Read in FreeRDP
FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Integer-Underflow leading to Out-Of-Bound Read in the zgfxdecompresssegment function. In the context of CopyMemory, it's possible to read data beyond the transmitted packet range and likely cause a crash. This issue has been addressed in versions 2.11.0 and 3.0.0-beta3. Users are advised to upgrade. There are no known workarounds for this issue.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-40181?
CVE-2023-40181 is a vulnerability in FreeRDP, an open-source implementation of the Remote Desktop Protocol (RDP), that allows an integer underflow leading to an out-of-bound read in the `zgfx_decompress_segment` function.
What is the severity of CVE-2023-40181?
The severity of CVE-2023-40181 is critical with a CVSS score of 9.1.
How does CVE-2023-40181 affect FreeRDP?
CVE-2023-40181 affects FreeRDP versions up to and including 2.11.0, 3.0.0-beta1, and 3.0.0-beta2.
How can I fix CVE-2023-40181 in FreeRDP?
To fix CVE-2023-40181 in FreeRDP, you should update to version 2.11.2 or later.
Where can I find more information about CVE-2023-40181?
You can find more information about CVE-2023-40181 on the FreeRDP GitHub repository and the FreeRDP security advisories page.