Information disclosure in FreeRDP - CVE-2018-1000852
Published: January 29, 2019
Vulnerability details
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to an error in channels/drdynvc/client/drdynvc_main.c, drdynvc_process_capability_request. A remote attacker can connect the rdp server with echo option and gain unauthorized access to sensitive information on the system.
Affected software
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for IBM z Systems
Opensuse
Fedora
remmina
pidgin-sipe
freerdp
gnome-boxes
How to mitigate CVE-2018-1000852
pidgin-sipe - addressed in versions 1.24.0-3.fc28, 1.24.0-3.fc29
freerdp - addressed in versions 2.0.0-48.20190228gitce386c8.fc29, 2.0.0-49.20190304git435872b.fc28
gnome-boxes - addressed in versions 3.28.5-2.fc28, 3.30.3-2.fc29