Количество 5
Количество 5
CVE-2026-91958
[GHSA-23pf-q83q-x45r: Unbounded MonitorIds used as an array index in X11 monitor selection]
CVE-2026-91958
FreeRDP versions before 3.31.0 fail to validate MonitorIds array values when parsing RDP connection files, allowing unbounded array indexing in xf_detect_monitors. Attackers can craft a malicious RDP file with an out-of-range selectedmonitors value to trigger out-of-bounds heap read and write operations when opened in xfreerdp.
CVE-2026-91958
FreeRDP versions before 3.31.0 fail to validate MonitorIds array values when parsing RDP connection files, allowing unbounded array indexing in xf_detect_monitors. Attackers can craft a malicious RDP file with an out-of-range selectedmonitors value to trigger out-of-bounds heap read and write operations when opened in xfreerdp.
CVE-2026-91958
FreeRDP versions before 3.31.0 fail to validate MonitorIds array value ...
GHSA-qjqr-mv8g-x357
FreeRDP versions before 3.31.0 fail to validate MonitorIds array values when parsing RDP connection files, allowing unbounded array indexing in xf_detect_monitors. Attackers can craft a malicious RDP file with an out-of-range selectedmonitors value to trigger out-of-bounds heap read and write operations when opened in xfreerdp.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-91958 [GHSA-23pf-q83q-x45r: Unbounded MonitorIds used as an array index in X11 monitor selection] | CVSS3: 6.6 | 0% Низкий | 4 дня назад | |
CVE-2026-91958 FreeRDP versions before 3.31.0 fail to validate MonitorIds array values when parsing RDP connection files, allowing unbounded array indexing in xf_detect_monitors. Attackers can craft a malicious RDP file with an out-of-range selectedmonitors value to trigger out-of-bounds heap read and write operations when opened in xfreerdp. | CVSS3: 6.6 | 0% Низкий | 4 дня назад | |
CVE-2026-91958 FreeRDP versions before 3.31.0 fail to validate MonitorIds array values when parsing RDP connection files, allowing unbounded array indexing in xf_detect_monitors. Attackers can craft a malicious RDP file with an out-of-range selectedmonitors value to trigger out-of-bounds heap read and write operations when opened in xfreerdp. | CVSS3: 6.6 | 0% Низкий | 4 дня назад | |
CVE-2026-91958 FreeRDP versions before 3.31.0 fail to validate MonitorIds array value ... | CVSS3: 6.6 | 0% Низкий | 4 дня назад | |
GHSA-qjqr-mv8g-x357 FreeRDP versions before 3.31.0 fail to validate MonitorIds array values when parsing RDP connection files, allowing unbounded array indexing in xf_detect_monitors. Attackers can craft a malicious RDP file with an out-of-range selectedmonitors value to trigger out-of-bounds heap read and write operations when opened in xfreerdp. | CVSS3: 6.6 | 0% Низкий | 4 дня назад |
Уязвимостей на страницу