An issue was discovered in FreeRDP before 2.1.1. An out-of-bounds (OOB) read vulnerability has been detected in securityfipsdecrypt in libfreerdp/core/security.c due to an uninitialized value.
{ "vanir_signatures": [ { "source": "https://github.com/freerdp/freerdp/commit/d6cd14059b257318f176c0ba3ee0a348826a9ef8", "signature_type": "Function", "digest": { "function_hash": "266323736551972269127634066471906506705", "length": 183.0 }, "id": "CVE-2020-13397-984c62e7", "target": { "file": "libfreerdp/core/security.c", "function": "security_fips_decrypt" }, "deprecated": false, "signature_version": "v1" }, { "source": "https://github.com/freerdp/freerdp/commit/d6cd14059b257318f176c0ba3ee0a348826a9ef8", "signature_type": "Line", "digest": { "threshold": 0.9, "line_hashes": [ "305552421302196892978711386341662376836", "338467403107459750946921420352373117312", "156588735209351682927470643023632917814" ] }, "id": "CVE-2020-13397-9f1589f0", "target": { "file": "libfreerdp/core/security.c" }, "deprecated": false, "signature_version": "v1" } ] }