[Git][security-tracker-team/security-tracker][master] 2 commits: identified potential patch for CVE-2023-39353/freerdp2

Tobias Frost (@tobi) tobi at debian.org
Tue Oct 3 11:49:30 BST 2023



Tobias Frost pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e345b33f by Tobias Frost at 2023-10-03T12:42:05+02:00
identified potential patch for CVE-2023-39353/freerdp2

- - - - -
21a3763b by Tobias Frost at 2023-10-03T12:48:48+02:00
Potential patch for CVE-2023-39350/freerdp2

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -4484,12 +4484,14 @@ CVE-2023-39354 (FreeRDP is a free implementation of the Remote Desktop Protocol
 CVE-2023-39353 (FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), ...)
 	- freerdp2 2.11.2+dfsg1-1 (bug #1051638)
 	NOTE: https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-hg53-9j9h-3c8f
+	NOTE: likely this patch: https://github.com/FreeRDP/FreeRDP/commit/efa0567c02
 CVE-2023-39352 (FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), ...)
 	- freerdp2 2.11.2+dfsg1-1 (bug #1051638)
 	NOTE: https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-whwr-qcf2-2mvj
 CVE-2023-39351 (FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), ...)
 	- freerdp2 2.11.2+dfsg1-1 (bug #1051638)
 	NOTE: https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-q9x9-cqjc-rgwq
+	NOTE: Potential patch: https://github.com/FreeRDP/FreeRDP/commit/99e243c
 CVE-2023-39350 (FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), ...)
 	- freerdp2 2.11.2+dfsg1-1 (bug #1051638)
 	NOTE: https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-rrrv-3w42-pffh



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/c2b71f3c44137ae6d6ac58d22dbfcb84c574dae7...21a3763b73989d103f2ed6d6b4524bfa8a9c98d7

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/c2b71f3c44137ae6d6ac58d22dbfcb84c574dae7...21a3763b73989d103f2ed6d6b4524bfa8a9c98d7
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231003/86bc38d2/attachment.htm>


More information about the debian-security-tracker-commits mailing list