Logo
componentusbredir
Name
usbredir
Version
0.9.0
Type
library
Description
usbredir libraries and utilities
Licenses
GPL-2.0-or-later & LGPL-2.1-or-later
PURL
-
CPE
cpe:2.3:*:*:usbredir:0.9.0:*:*:*:*:*:*:*

Other Versions#


Project
Branch
Version
master
0.14.0
scarthgap
0.13.0

Patches#


#
Title
Author
Resolve
1
Avoid use-after-free in serialization
Michael Hanselmann <public@hansmi.ch>
CVE-2021-3700

Vulnerabilities#


Name
Analysis
Description
Patched
A use-after-free vulnerability was found in usbredir in versions prior to 0.11.0 in the usbredirparser_serialize() in usbredirparser/usbredirparser.c. This issue occurs when serializing large amounts of buffered write data in the case of a slow or blocked destination.