View at Official suse advisory, NVD, CVE.org · CVE detail
Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.
CVE-2018-8788 severity important: SUSE including 78 source package names (freerdp-1.0.2-15.el7_6.1, freerdp-2.0.0~git.1463131968.4e66df7-12.8.1, …), 95 product×package rows across 20 product lines (SUSE Liberty Linux 7, SUSE Linux Enterprise Desktop 12 SP3, … (20 product lines)): Fixed 95.
FreeRDP prior to version 2.0.0-rc4 contains an Out-Of-Bounds Write of up to 4 bytes in function nsc_rle_decode() that results in a memory corruption and possibly even a remote code execution.