In FreeRDP dopo 1.0 e 2.0.0, prima, c’è un flusso out-of-bounds cercano in update_read_synchronize che potrebbe portare ad una successiva out-of-bounds leggono.
https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-hx48-wmmm-mr5q
https://github.com/FreeRDP/FreeRDP/commit/ed53cd148f43cbab905eaa0f5308c2bf3c48cc37
https://github.com/FreeRDP/FreeRDP/issues/6006
https://lists.debian.org/debian-lts-announce/2020/08/msg00054.html
https://usn.ubuntu.com/4379-1/
https://usn.ubuntu.com/4382-1/
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-11046