← العودة للجدول
CVE-2026-24677
CVE-2026-24677 — VulnCheck: FreeRDP is a free implementation of the Remote Desktop Protocol. Prior
📅 2026-02-09
🔴 Critical 🔥 No VulnCheck Exploit Windows CVSS 9.1

📋 الوصف الكامل

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.22.0, ecam_encoder_compress_h264 trusts server-controlled dimensions and does not validate the source buffer size, leading to an out-of-bounds read in sws_scale. This vulnerability is fixed in 3.22.0.

💻 الأنظمة المتأثرة

VulnCheck: FreeRDP is

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-24677

📡 المصدر

VulnCheck

✅ الحلول والتخفيف

Refer to CVE-2026-24677 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←