CVE-2020-11085: Debian Linux

Low severity, CVSS 3.5. EPSS: 1.7% chance of exploitation in the next 30 days.

In FreeRDP before 2.1.0, there is an out-of-bounds read in cliprdr_read_format_list. Clipboard format data read (by client or server) might read data out-of-bounds. This has been fixed in 2.1.0.

Affected products

  • Debian Debian Linux: version 10.0 only
  • Freerdp Freerdp: before 2.1.0 (fixed in 2.1.0)
  • Opensuse Leap: version 15.1 only

Published 2020-05-29. Last modified 2026-06-17.