CVE-2020-4033

Source
https://cve.org/CVERecord?id=CVE-2020-4033
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-4033.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2020-4033
Downstream
Related
Published
2020-06-22T22:15:13.353Z
Modified
2026-02-24T01:34:22.022143Z
Severity
  • 6.5 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L CVSS Calculator
Summary
[none]
Details

In FreeRDP before version 2.1.2, there is an out of bounds read in RLEDECOMPRESS. All FreeRDP based clients with sessions with color depth < 32 are affected. This is fixed in version 2.1.2.

References

Affected packages

Git / github.com/ppp-project/ppp

Affected ranges

Type
GIT
Repo
https://github.com/ppp-project/ppp
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

ppp-2.*
ppp-2.0.4
ppp-2.1.1
v2.*
v2.0.4
v2.1.1

Database specific

vanir_signatures
[
    {
        "id": "CVE-2020-4033-3816e2fe",
        "signature_version": "v1",
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "155511261592783426624179759260545059294",
                "119971439244875867513988354768196347397",
                "88381006708739987807965788037965690734",
                "316640855529440849016342861036299547053",
                "289911249341353993198624013086362863014",
                "309897169373457004254502149792082507906",
                "30801738976032222944962932228920604445",
                "61312632879046248777534681309396296053",
                "114317559375241115123223927335477874506",
                "322555236313409553363361840173919069132",
                "221154888195169886926492869995466494564",
                "113219049945890306213968148198545549114",
                "285073978435609829416008331033747787841"
            ]
        },
        "deprecated": false,
        "source": "https://github.com/ppp-project/ppp/commit/0e712663a22b7a04dc60803fbf8e8a0944b330bf",
        "signature_type": "Line",
        "target": {
            "file": "pppd/sys-linux.c"
        }
    },
    {
        "id": "CVE-2020-4033-7f424b93",
        "signature_version": "v1",
        "digest": {
            "function_hash": "219855540540664471760465833168963274141",
            "length": 2152.0
        },
        "deprecated": false,
        "source": "https://github.com/ppp-project/ppp/commit/0e712663a22b7a04dc60803fbf8e8a0944b330bf",
        "signature_type": "Function",
        "target": {
            "file": "pppd/sys-linux.c",
            "function": "get_ether_addr"
        }
    }
]
source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-4033.json"