Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-33982

Опубликовано: 30 мар. 2026
Источник: debian

Описание

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, there is a heap-buffer-overflow READ vulnerability at 24 bytes before the allocation, in winpr_aligned_offset_recalloc(). This issue has been patched in version 3.24.2.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
freerdp3fixed3.24.2+dfsg-1package
freerdp3fixed3.15.0+dfsg-2.1+deb13u2trixiepackage
freerdp2removedpackage
freerdp2no-dsabookwormpackage

Примечания

  • https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-8jm9-2925-g4v2

Связанные уязвимости

CVSS3: 7.1
ubuntu
6 месяцев назад

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, there is a heap-buffer-overflow READ vulnerability at 24 bytes before the allocation, in winpr_aligned_offset_recalloc(). This issue has been patched in version 3.24.2.

CVSS3: 6.6
redhat
6 месяцев назад

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, there is a heap-buffer-overflow READ vulnerability at 24 bytes before the allocation, in winpr_aligned_offset_recalloc(). This issue has been patched in version 3.24.2.

CVSS3: 7.1
nvd
6 месяцев назад

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, there is a heap-buffer-overflow READ vulnerability at 24 bytes before the allocation, in winpr_aligned_offset_recalloc(). This issue has been patched in version 3.24.2.

CVSS3: 8.1
fstec
6 месяцев назад

Уязвимость RDP-клиента FreeRDP, связанная с чтением за границами буфера в памяти, позволяющая нарушителю оказать воздействие на конфиденциальность и доступность защищаемой информации

CVSS3: 8.1
redos
3 месяца назад

Уязвимость freerdp3