← العودة للجدول
CVE-2026-22859
CVE-2026-22859 — VulnCheck: FreeRDP is a free implementation of the Remote Desktop Protocol. Prior
📅 2026-01-14
🔴 Critical 🔥 No VulnCheck Exploit Windows CVSS 9.1

📋 الوصف الكامل

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.20.1, the URBDRC client does not perform bounds checking on server‑supplied MSUSB_INTERFACE_DESCRIPTOR values and uses them as indices in libusb_udev_complete_msconfig_setup, causing an out‑of‑bounds read. This vulnerability is fixed in 3.20.1.

💻 الأنظمة المتأثرة

VulnCheck: FreeRDP is

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-22859

📡 المصدر

VulnCheck

✅ الحلول والتخفيف

Refer to CVE-2026-22859 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←