[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2023:0033-1 -- SLES xrdp, libpainter0, librfxencode0

ID: oval:org.secpod.oval:def:89048108Date: (C)2023-01-06   (M)2023-12-01
Class: PATCHFamily: unix




This update for xrdp fixes the following issues: - CVE-2022-23468: Fixed a buffer overflow in xrdp_login_wnd_create . - CVE-2022-23478: Fixed an out of bound write in xrdp_mm_trans_process_drdynvc_chan . - CVE-2022-23479: Fixed a buffer overflow in xrdp_mm_chan_data_in . - CVE-2022-23480: Fixed a buffer overflow in devredir_proc_client_devlist_announce_req . - CVE-2022-23481: Fixed an out of bound read in xrdp_caps_process_confirm_active . - CVE-2022-23482: Fixed an out of bound read in xrdp_sec_process_mcs_data_CS_CORE . - CVE-2022-23483: Fixed an out of bound read in libxrdp_send_to_channel . - CVE-2022-23484: Fixed a integer overflow in xrdp_mm_process_rail_update_window_text . - CVE-2022-23493: Fixed an out of bound read in xrdp_mm_trans_process_drdynvc_channel_close .

Platform:
SUSE Linux Enterprise Desktop 15 SP4
SUSE Linux Enterprise Server 15 SP4
SUSE Linux Enterprise Server 15 SP2
SUSE Linux Enterprise Server 15 SP3
Product:
xrdp
libpainter0
librfxencode0
Reference:
SUSE-SU-2023:0033-1
CVE-2022-23468
CVE-2022-23478
CVE-2022-23479
CVE-2022-23480
CVE-2022-23481
CVE-2022-23482
CVE-2022-23483
CVE-2022-23484
CVE-2022-23493
CVE    9
CVE-2022-23480
CVE-2022-23478
CVE-2022-23468
CVE-2022-23479
...

© SecPod Technologies