From 8ac6644bbcfa4ea2b59f2d3e1f57737d3899e99d Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Wed, 8 Jul 2020 22:25:29 +0200 Subject: Add CVE-2020-4044/xrdp --- data/CVE/list.2020 | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/data/CVE/list.2020 b/data/CVE/list.2020 index 663819b9a1..876e501e91 100644 --- a/data/CVE/list.2020 +++ b/data/CVE/list.2020 @@ -26660,7 +26660,9 @@ CVE-2020-4051 (In Dijit before versions 1.11.11, and greater than or equal to 1. CVE-2020-4045 (SSB-DB version 20.0.0 has an information disclosure vulnerability. The ...) NOT-FOR-US: SSB-DB CVE-2020-4044 (The xrdp-sesman service before version 0.9.13.1 can be crashed by conn ...) - TODO: check + - xrdp + NOTE: https://github.com/neutrinolabs/xrdp/security/advisories/GHSA-j9fv-6fwf-p3g4 + NOTE: Fixed by: https://github.com/neutrinolabs/xrdp/commit/e593f58a82bf79b556601ae08e9e25e366a662fb CVE-2020-4043 (phpMussel from versions 1.0.0 and less than 1.6.0 has an unserializati ...) NOT-FOR-US: phpMussel CVE-2020-4042 -- cgit v1.2.3