Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2026-91957

4 дня назад

[GHSA-j5mq-3349-gwmm: channels,smartcard worker creation failure frees a devman-owned device]

CVSS3: 3.1
EPSS: Низкий
redhat логотип

CVE-2026-91957

4 дня назад

FreeRDP before 3.31.0 contains a use-after-free vulnerability in the smartcard RDPDR device handler when worker thread creation fails after device registration. Attackers can trigger thread creation failure during channel setup to cause device pointer deallocation while devman retains a reference, leading to crash or code execution.

CVSS3: 3.1
EPSS: Низкий
nvd логотип

CVE-2026-91957

4 дня назад

FreeRDP before 3.31.0 contains a use-after-free vulnerability in the smartcard RDPDR device handler when worker thread creation fails after device registration. Attackers can trigger thread creation failure during channel setup to cause device pointer deallocation while devman retains a reference, leading to crash or code execution.

CVSS3: 3.1
EPSS: Низкий
debian логотип

CVE-2026-91957

4 дня назад

FreeRDP before 3.31.0 contains a use-after-free vulnerability in the s ...

CVSS3: 3.1
EPSS: Низкий
github логотип

GHSA-h5f5-2qh4-2xjm

4 дня назад

FreeRDP before 3.31.0 contains a use-after-free vulnerability in the smartcard RDPDR device handler when worker thread creation fails after device registration. Attackers can trigger thread creation failure during channel setup to cause device pointer deallocation while devman retains a reference, leading to crash or code execution.

CVSS3: 3.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-91957

[GHSA-j5mq-3349-gwmm: channels,smartcard worker creation failure frees a devman-owned device]

CVSS3: 3.1
0%
Низкий
4 дня назад
redhat логотип
CVE-2026-91957

FreeRDP before 3.31.0 contains a use-after-free vulnerability in the smartcard RDPDR device handler when worker thread creation fails after device registration. Attackers can trigger thread creation failure during channel setup to cause device pointer deallocation while devman retains a reference, leading to crash or code execution.

CVSS3: 3.1
0%
Низкий
4 дня назад
nvd логотип
CVE-2026-91957

FreeRDP before 3.31.0 contains a use-after-free vulnerability in the smartcard RDPDR device handler when worker thread creation fails after device registration. Attackers can trigger thread creation failure during channel setup to cause device pointer deallocation while devman retains a reference, leading to crash or code execution.

CVSS3: 3.1
0%
Низкий
4 дня назад
debian логотип
CVE-2026-91957

FreeRDP before 3.31.0 contains a use-after-free vulnerability in the s ...

CVSS3: 3.1
0%
Низкий
4 дня назад
github логотип
GHSA-h5f5-2qh4-2xjm

FreeRDP before 3.31.0 contains a use-after-free vulnerability in the smartcard RDPDR device handler when worker thread creation fails after device registration. Attackers can trigger thread creation failure during channel setup to cause device pointer deallocation while devman retains a reference, leading to crash or code execution.

CVSS3: 3.1
0%
Низкий
4 дня назад

Уязвимостей на страницу