Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-24678

Опубликовано: 09 фев. 2026
Источник: nvd
CVSS3: 7.5
CVSS3: 5.3
EPSS Низкий

Описание

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.22.0, A capture thread sends sample responses using a freed channel callback after a device channel close, leading to a use after free in ecam_channel_write. This vulnerability is fixed in 3.22.0.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:freerdp:freerdp:*:*:*:*:*:*:*:*
Версия до 3.22.0 (исключая)

EPSS

Процентиль: 46%
0.00628
Низкий

7.5 High

CVSS3

5.3 Medium

CVSS3

Дефекты

CWE-416
CWE-825

Связанные уязвимости

CVSS3: 7.5
ubuntu
6 месяцев назад

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.22.0, A capture thread sends sample responses using a freed channel callback after a device channel close, leading to a use after free in ecam_channel_write. This vulnerability is fixed in 3.22.0.

CVSS3: 5.3
redhat
6 месяцев назад

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.22.0, A capture thread sends sample responses using a freed channel callback after a device channel close, leading to a use after free in ecam_channel_write. This vulnerability is fixed in 3.22.0.

CVSS3: 7.5
debian
6 месяцев назад

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior ...

CVSS3: 7.5
fstec
6 месяцев назад

Уязвимость функции ecam_channel_write() реализации протокола удалённого рабочего стола FreeRDP, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
redos
около 2 месяцев назад

Уязвимость freerdp3

EPSS

Процентиль: 46%
0.00628
Низкий

7.5 High

CVSS3

5.3 Medium

CVSS3

Дефекты

CWE-416
CWE-825