In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Integer Overflow or Wraparound vulnerabilities in an interactive lesson.
Start learningUpgrade freerdp/freerdp to version 3.24.2 or higher.
Affected versions of this package are vulnerable to Integer Overflow or Wraparound in the progressive_decompress_tile_upgrade process when a mismatch is detected via progressive_rfx_quant_cmp_equal but execution continues after only emitting a warning. An attacker can cause undefined behavior and excessive CPU consumption by supplying crafted input that results in a wrapped value being used as a shift exponent, leading to an extremely large iteration loop.