PT-2026-29138 · Freerdp+4 · Freerdp+4

·

CVE-2026-33985

·

Publicado

2026-01-01

·

Atualizado

2026-08-10

CVSS v2.0

8.5

Alta

VetorAV:N/AC:L/Au:N/C:C/I:N/A:P
Name of the Vulnerable Software and Affected Versions FreeRDP versions prior to 3.24.2
Description FreeRDP is a free implementation of the Remote Desktop Protocol. Versions prior to 3.24.2 are susceptible to a flaw where pixel data from adjacent heap memory is rendered to the screen, potentially exposing sensitive data to an attacker.
Recommendations Update to version 3.24.2 or later.

Exploit

Correção

DoS

Out of bounds Read

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALSA-2026:16014
ALSA-2026:16019
ALSA-2026:16482
ALSA-2026:19358
BDU:2026-04672
CVE-2026-33985
GHSA-X6GR-8P7H-5H85
OESA-2026-2439
OESA-2026-2440
OESA-2026-2441
OESA-2026-2442
OESA-2026-2540
OPENSUSE-SU-2026:10633-1
OPENSUSE-SU-2026:20657-1
OPENSUSE-SU-2026:21116-1
RHSA-2026:16014
RHSA-2026:16019
RHSA-2026:16482
RHSA-2026:16483
RHSA-2026:16485
RHSA-2026:16777
RHSA-2026:16814
RHSA-2026:16865
RHSA-2026:16866
RHSA-2026:19142
RHSA-2026:19358
SUSE-SU-2026:21436-1
SUSE-SU-2026:22194-1
SUSE-SU-2026:3562-1
USN-8561-1

Produtos afetados

Freerdp
Linuxmint
Red Os
Rocky Linux
Ubuntu