Beveiligingsadvies

CVE-2026-24677

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-02-09 18:16:44
Laatst bijgewerkt 2026-02-10 16:02:18
Toegewezen door GitHub_M
CVSS-score 8.7
Status PUBLISHED

Beschrijving

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.22.0, ecam_encoder_compress_h264 trusts server-controlled dimensions and does not validate the source buffer size, leading to an out-of-bounds read in sws_scale. This vulnerability is fixed in 3.22.0.