Количество 14
Количество 14
CVE-2026-25941
FreeRDP is a free implementation of the Remote Desktop Protocol. Versions on the 2.x branch prior to to 2.11.8 and on the 3.x branch prior to 3.23.0 have an out-of-bounds read vulnerability in the FreeRDP client's RDPGFX channel that allows a malicious RDP server to read uninitialized heap memory by sending a crafted WIRE_TO_SURFACE_2 PDU with a `bitmapDataLength` value larger than the actual data in the packet. This can lead to information disclosure or client crashes when a user connects to a malicious server. Versions 2.11.8 and 3.23.0 fix the issue.
CVE-2026-25941
FreeRDP is a free implementation of the Remote Desktop Protocol. Versions on the 2.x branch prior to to 2.11.8 and on the 3.x branch prior to 3.23.0 have an out-of-bounds read vulnerability in the FreeRDP client's RDPGFX channel that allows a malicious RDP server to read uninitialized heap memory by sending a crafted WIRE_TO_SURFACE_2 PDU with a `bitmapDataLength` value larger than the actual data in the packet. This can lead to information disclosure or client crashes when a user connects to a malicious server. Versions 2.11.8 and 3.23.0 fix the issue.
CVE-2026-25941
FreeRDP is a free implementation of the Remote Desktop Protocol. Versions on the 2.x branch prior to to 2.11.8 and on the 3.x branch prior to 3.23.0 have an out-of-bounds read vulnerability in the FreeRDP client's RDPGFX channel that allows a malicious RDP server to read uninitialized heap memory by sending a crafted WIRE_TO_SURFACE_2 PDU with a `bitmapDataLength` value larger than the actual data in the packet. This can lead to information disclosure or client crashes when a user connects to a malicious server. Versions 2.11.8 and 3.23.0 fix the issue.
CVE-2026-25941
FreeRDP is a free implementation of the Remote Desktop Protocol. Versi ...
BDU:2026-04136
Уязвимость RDP-клиента FreeRDP, связанная с выходом операции за границы буфера в памяти в результате некорректной проверки входных данных, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
ROS-20260609-73-0004
Уязвимость freerdp3
ROS-20260609-73-0003
Уязвимость freerdp
SUSE-SU-2026:1635-1
Security update for freerdp
SUSE-SU-2026:1634-1
Security update for freerdp
SUSE-SU-2026:1632-1
Security update for freerdp
SUSE-SU-2026:1640-1
Security update for freerdp2
SUSE-SU-2026:1633-1
Security update for freerdp
openSUSE-SU-2026:20632-1
Security update for freerdp2
openSUSE-SU-2026:20657-1
Security update for freerdp
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-25941 FreeRDP is a free implementation of the Remote Desktop Protocol. Versions on the 2.x branch prior to to 2.11.8 and on the 3.x branch prior to 3.23.0 have an out-of-bounds read vulnerability in the FreeRDP client's RDPGFX channel that allows a malicious RDP server to read uninitialized heap memory by sending a crafted WIRE_TO_SURFACE_2 PDU with a `bitmapDataLength` value larger than the actual data in the packet. This can lead to information disclosure or client crashes when a user connects to a malicious server. Versions 2.11.8 and 3.23.0 fix the issue. | CVSS3: 4.3 | 0% Низкий | 5 месяцев назад | |
CVE-2026-25941 FreeRDP is a free implementation of the Remote Desktop Protocol. Versions on the 2.x branch prior to to 2.11.8 and on the 3.x branch prior to 3.23.0 have an out-of-bounds read vulnerability in the FreeRDP client's RDPGFX channel that allows a malicious RDP server to read uninitialized heap memory by sending a crafted WIRE_TO_SURFACE_2 PDU with a `bitmapDataLength` value larger than the actual data in the packet. This can lead to information disclosure or client crashes when a user connects to a malicious server. Versions 2.11.8 and 3.23.0 fix the issue. | CVSS3: 5.4 | 0% Низкий | 5 месяцев назад | |
CVE-2026-25941 FreeRDP is a free implementation of the Remote Desktop Protocol. Versions on the 2.x branch prior to to 2.11.8 and on the 3.x branch prior to 3.23.0 have an out-of-bounds read vulnerability in the FreeRDP client's RDPGFX channel that allows a malicious RDP server to read uninitialized heap memory by sending a crafted WIRE_TO_SURFACE_2 PDU with a `bitmapDataLength` value larger than the actual data in the packet. This can lead to information disclosure or client crashes when a user connects to a malicious server. Versions 2.11.8 and 3.23.0 fix the issue. | CVSS3: 4.3 | 0% Низкий | 5 месяцев назад | |
CVE-2026-25941 FreeRDP is a free implementation of the Remote Desktop Protocol. Versi ... | CVSS3: 4.3 | 0% Низкий | 5 месяцев назад | |
BDU:2026-04136 Уязвимость RDP-клиента FreeRDP, связанная с выходом операции за границы буфера в памяти в результате некорректной проверки входных данных, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации | CVSS3: 8.1 | 0% Низкий | 5 месяцев назад | |
ROS-20260609-73-0004 Уязвимость freerdp3 | CVSS3: 8.1 | 0% Низкий | около 2 месяцев назад | |
ROS-20260609-73-0003 Уязвимость freerdp | CVSS3: 8.1 | 0% Низкий | около 2 месяцев назад | |
SUSE-SU-2026:1635-1 Security update for freerdp | 3 месяца назад | |||
SUSE-SU-2026:1634-1 Security update for freerdp | 3 месяца назад | |||
SUSE-SU-2026:1632-1 Security update for freerdp | 3 месяца назад | |||
SUSE-SU-2026:1640-1 Security update for freerdp2 | 3 месяца назад | |||
SUSE-SU-2026:1633-1 Security update for freerdp | 3 месяца назад | |||
openSUSE-SU-2026:20632-1 Security update for freerdp2 | 3 месяца назад | |||
openSUSE-SU-2026:20657-1 Security update for freerdp | 3 месяца назад |
Уязвимостей на страницу