CVE-2020-11097

Source
https://cve.org/CVERecord?id=CVE-2020-11097
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-11097.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2020-11097
Downstream
Related
Published
2020-06-22T22:15:12.103Z
Modified
2026-02-18T07:21:02.194184Z
Severity
  • 5.4 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L CVSS Calculator
Summary
[none]
Details

In FreeRDP before version 2.1.2, an out of bounds read occurs resulting in accessing a memory location that is outside of the boundaries of the static array PRIMARYDRAWINGORDERFIELDBYTES. This is fixed in version 2.1.2.

References

Affected packages

Git / github.com/ppp-project/ppp

Affected ranges

Type
GIT
Repo
https://github.com/ppp-project/ppp
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

ppp-2.*
ppp-2.0.4
ppp-2.1.1
v2.*
v2.0.4
v2.1.1

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-11097.json"
vanir_signatures
[
    {
        "signature_version": "v1",
        "deprecated": false,
        "digest": {
            "line_hashes": [
                "155511261592783426624179759260545059294",
                "119971439244875867513988354768196347397",
                "88381006708739987807965788037965690734",
                "316640855529440849016342861036299547053",
                "289911249341353993198624013086362863014",
                "309897169373457004254502149792082507906",
                "30801738976032222944962932228920604445",
                "61312632879046248777534681309396296053",
                "114317559375241115123223927335477874506",
                "322555236313409553363361840173919069132",
                "221154888195169886926492869995466494564",
                "113219049945890306213968148198545549114",
                "285073978435609829416008331033747787841"
            ],
            "threshold": 0.9
        },
        "signature_type": "Line",
        "id": "CVE-2020-11097-3816e2fe",
        "source": "https://github.com/ppp-project/ppp/commit/0e712663a22b7a04dc60803fbf8e8a0944b330bf",
        "target": {
            "file": "pppd/sys-linux.c"
        }
    },
    {
        "signature_version": "v1",
        "deprecated": false,
        "digest": {
            "length": 2152.0,
            "function_hash": "219855540540664471760465833168963274141"
        },
        "signature_type": "Function",
        "id": "CVE-2020-11097-7f424b93",
        "source": "https://github.com/ppp-project/ppp/commit/0e712663a22b7a04dc60803fbf8e8a0944b330bf",
        "target": {
            "function": "get_ether_addr",
            "file": "pppd/sys-linux.c"
        }
    }
]