FreeRDP 2.1 update fixes 8 vulnerabilities

Published new project release FreeRDP 2.1, which offers a free implementation of the remote desktop access protocol RDP (Remote Desktop Protocol), developed on the basis of specifications Microsoft. The project provides a library for integrating RDP support into third-party applications and a client that can be used to remotely connect to a Windows desktop. Project code spreads licensed under Apache 2.0.

The new version adds new expert command line options "/tune" and "/tune-list", through which you can change any setting of the client, expanded options for filtering forwarded USB devices, work on bugs and eliminated eight vulnerabilities. Five problems can lead to collapse or data leakage as a result of reading from areas outside the allocated buffer. One the problem results in integer overflow. Three problems can lead to buffer overflows in the cliprdr_server_receive_capabilities and URBDRC handlers.

Source: opennet.ru

Add a comment