Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2026-91964

3 дня назад

[GHSA-2vf2-grvj-6g8x: Heap buffer overflow in nego_send_negotiation_request]

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2026-91964

3 дня назад

FreeRDP versions before 3.31.0 contain a heap-based buffer overflow in nego_send_negotiation_request when processing Server Redirection PDU messages with attacker-controlled LoadBalanceInfo fields. A malicious RDP server can trigger the overflow by sending an arbitrary-length field that gets written to a fixed 512-byte buffer without validation, causing client crashes or potential code execution when chained with memory disclosure.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2026-91964

3 дня назад

FreeRDP versions before 3.31.0 contain a heap-based buffer overflow in nego_send_negotiation_request when processing Server Redirection PDU messages with attacker-controlled LoadBalanceInfo fields. A malicious RDP server can trigger the overflow by sending an arbitrary-length field that gets written to a fixed 512-byte buffer without validation, causing client crashes or potential code execution when chained with memory disclosure.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2026-91964

3 дня назад

FreeRDP versions before 3.31.0 contain a heap-based buffer overflow in ...

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-f73m-4rv5-6gp4

3 дня назад

FreeRDP versions before 3.31.0 contain a heap-based buffer overflow in nego_send_negotiation_request when processing Server Redirection PDU messages with attacker-controlled LoadBalanceInfo fields. A malicious RDP server can trigger the overflow by sending an arbitrary-length field that gets written to a fixed 512-byte buffer without validation, causing client crashes or potential code execution when chained with memory disclosure.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-91964

[GHSA-2vf2-grvj-6g8x: Heap buffer overflow in nego_send_negotiation_request]

CVSS3: 8.8
1%
Низкий
3 дня назад
redhat логотип
CVE-2026-91964

FreeRDP versions before 3.31.0 contain a heap-based buffer overflow in nego_send_negotiation_request when processing Server Redirection PDU messages with attacker-controlled LoadBalanceInfo fields. A malicious RDP server can trigger the overflow by sending an arbitrary-length field that gets written to a fixed 512-byte buffer without validation, causing client crashes or potential code execution when chained with memory disclosure.

CVSS3: 8.8
1%
Низкий
3 дня назад
nvd логотип
CVE-2026-91964

FreeRDP versions before 3.31.0 contain a heap-based buffer overflow in nego_send_negotiation_request when processing Server Redirection PDU messages with attacker-controlled LoadBalanceInfo fields. A malicious RDP server can trigger the overflow by sending an arbitrary-length field that gets written to a fixed 512-byte buffer without validation, causing client crashes or potential code execution when chained with memory disclosure.

CVSS3: 8.8
1%
Низкий
3 дня назад
debian логотип
CVE-2026-91964

FreeRDP versions before 3.31.0 contain a heap-based buffer overflow in ...

CVSS3: 8.8
1%
Низкий
3 дня назад
github логотип
GHSA-f73m-4rv5-6gp4

FreeRDP versions before 3.31.0 contain a heap-based buffer overflow in nego_send_negotiation_request when processing Server Redirection PDU messages with attacker-controlled LoadBalanceInfo fields. A malicious RDP server can trigger the overflow by sending an arbitrary-length field that gets written to a fixed 512-byte buffer without validation, causing client crashes or potential code execution when chained with memory disclosure.

CVSS3: 8.8
1%
Низкий
3 дня назад

Уязвимостей на страницу