Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: 115c1d0d by Salvatore Bonaccorso at 2025-02-08T10:21:11+01:00 Update information on CVE-2023-39355 The issue is really specific to the 3.0.0-beta1 versions onwards until it got fixed in 3.0.0-beta3. This is inline with the assessment of both upstream and other distros. - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -132876,7 +132876,8 @@ CVE-2023-39355 (FreeRDP is a free implementation of the Remote Desktop Protocol {DLA-3606-1} - freerdp2 <not-affected> (Vulnerable code not present) NOTE: https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-hvwj-vmg6-2f5h - NOTE: https://github.com/FreeRDP/FreeRDP/commit/d6f9d33a7db0b346195b6a15b5b99944ba41beee (3.0.0-beta3) + NOTE: Introduced around refactoring by: https://github.com/FreeRDP/FreeRDP/commit/4795ee5eacdab1c4251cbc2231ec672aa770ae51 (3.0.0-beta1) + NOTE: Fixed by: https://github.com/FreeRDP/FreeRDP/commit/d6f9d33a7db0b346195b6a15b5b99944ba41beee (3.0.0-beta3) CVE-2023-39354 (FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), ...) {DLA-3606-1} - freerdp2 2.11.2+dfsg1-1 (bug #1051638) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/115c1d0de173fb8b601fe094b74c5c7aae705bbf -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/115c1d0de173fb8b601fe094b74c5c7aae705bbf You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list debian-security-tracker-commits@alioth-lists.debian.net https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits