CVE-2024-32659

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-32659
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-32659.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-32659
Downstream
Related
Published
2024-04-23T20:15:07Z
Modified
2025-09-19T15:00:16.951463Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read if ((nWidth == 0) and (nHeight == 0)). Version 3.5.1 contains a patch for the issue. No known workarounds are available.

References

Affected packages

Git / github.com/freerdp/freerdp

Affected ranges

Type
GIT
Repo
https://github.com/freerdp/freerdp
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

1.*

1.0-beta1
1.0-beta2
1.0-beta3
1.0-beta4
1.0-beta5
1.0.0
1.0.1
1.1.0-beta+2013071101
1.1.0-beta1
1.1.0-beta1+android2
1.1.0-beta1+android3
1.1.0-beta1+android4
1.1.0-beta1+android5
1.1.0-beta1+ios1
1.1.0-beta1+ios2
1.1.0-beta1+ios3
1.1.0-beta1+ios4
1.2.0-beta1+android7
1.2.0-beta1+android9

2.*

2.0.0
2.0.0-beta1+android10
2.0.0-beta1+android11
2.0.0-rc0
2.0.0-rc1
2.0.0-rc2
2.0.0-rc3
2.0.0-rc4

3.*

3.0.0
3.0.0-beta1
3.0.0-beta2
3.0.0-beta3
3.0.0-beta4
3.0.0-rc0
3.1.0
3.2.0
3.3.0
3.4.0
3.5.0

Database specific

{
    "vanir_signatures": [
        {
            "digest": {
                "function_hash": "245208013832575399984640192656988015344",
                "length": 930.0
            },
            "signature_version": "v1",
            "signature_type": "Function",
            "deprecated": false,
            "id": "CVE-2024-32659-29dd304a",
            "source": "https://github.com/freerdp/freerdp/commit/6430945ce003a5e24d454d8566f54aae1b6b617b",
            "target": {
                "function": "freerdp_image_copy",
                "file": "libfreerdp/codec/color.c"
            }
        }
    ]
}