From c03d50d7f1a00bee1de193affe69b11670a15792 Mon Sep 17 00:00:00 2001 From: Mike Gabriel Date: Sun, 30 Aug 2020 01:38:46 +0200 Subject: Reserve DLA-2356-1 for freerdp --- data/CVE/2014.list | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'data/CVE/2014.list') diff --git a/data/CVE/2014.list b/data/CVE/2014.list index 9119efc646..094b95d3fb 100644 --- a/data/CVE/2014.list +++ b/data/CVE/2014.list @@ -24643,7 +24643,7 @@ CVE-2014-0792 (Sonatype Nexus 1.x and 2.x before 2.7.1 allows remote attackers t CVE-2014-0790 RESERVED CVE-2014-0791 (Integer overflow in the license_read_scope_list function in libfreerdp ...) - - freerdp (unimportant) + - freerdp NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=998941 NOTE: https://github.com/FreeRDP/FreeRDP/commit/f1d6afca6ae620f9855a33280bdc6f3ad9153be0#diff-b6d68bbca6e0f5875c57ef225cd65c45 NOTE: A malicous license has simpler means to DoS a RDP client, e.g. by simply stating that no valid license exists etc. -- cgit v1.2.3