#VU80399 NULL pointer dereference in FreeRDP - CVE-2023-39351
Published: September 4, 2023
FreeRDP
FreeRDP
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a NULL pointer dereference error within the rfx_process_message_tileset() function in libfreerdp/codec/rfx.c in RemoteFX. A remote attacker can pass specially crafted data to the application and perform a denial of service (DoS) attack.