Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date: Wed, 10 Jul 2013 09:10:45 -0400 (EDT)
From: Jan Lieskovsky <>
Cc: "Steven M. Christey" <>,
        Marc-André Moreau <>,
        Bernhard Miklautz <>,
        Martin Fleisz <>
Subject: CVE Request -- FreeRDP: Multiple security fixes in 1.1.0-beta1

Hello Kurt, Steve, vendors,

  (some time ago) FreeRDP upstream has released 1.1.0-beta1 version:

correcting multiple security flaws:
* library / client side fixes:

* server side fixes:

CC-ed Marc-Andre, Bernhard and Martin of FreeRDP upstream to clarify
if the above list of patches is complete wrt to security fixes, corrected
within 1.0.1-beta1 version. Marc-Andre, Bernhard, Martin, please complete
the set of security fixes if / where necessary.

Kurt / Steve, could you allocate CVE ids for these?

Thank you && Regards, Jan.
Jan iankko Lieskovsky / Red Hat Security Response Team

P.S.: Thanks goes to Florian Weimer of Red Hat Product Security Team for pointing these

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.