Search CVE reports


Toggle filters

61 – 70 of 31945 results

Status is adjusted based on your filters.


CVE-2026-24678

Medium priority
Needs evaluation

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.22.0, A capture thread sends sample responses using a freed channel callback after a device channel close, leading to a use after free...

3 affected packages

freerdp, freerdp2, freerdp3

Package 24.04 LTS
freerdp Not in release
freerdp2 Needs evaluation
freerdp3 Needs evaluation
Show less packages

CVE-2026-24677

Medium priority
Needs evaluation

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.22.0, ecam_encoder_compress_h264 trusts server-controlled dimensions and does not validate the source buffer size, leading to an out-of-bounds read in...

3 affected packages

freerdp, freerdp2, freerdp3

Package 24.04 LTS
freerdp Not in release
freerdp2 Needs evaluation
freerdp3 Needs evaluation
Show less packages

CVE-2026-24676

Medium priority
Needs evaluation

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.22.0, AUDIN format renegotiation frees the active format list while the capture thread continues using audin->format, leading to a use after free in...

3 affected packages

freerdp, freerdp2, freerdp3

Package 24.04 LTS
freerdp Not in release
freerdp2 Needs evaluation
freerdp3 Needs evaluation
Show less packages

CVE-2026-24675

Medium priority
Needs evaluation

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.22.0, urb_select_interface can free the device's MS config on error but later code still dereferences it, leading to a use after free...

3 affected packages

freerdp, freerdp2, freerdp3

Package 24.04 LTS
freerdp Not in release
freerdp2 Needs evaluation
freerdp3 Needs evaluation
Show less packages

CVE-2026-24491

Medium priority
Needs evaluation

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.22.0, video_timer can send client notifications after the control channel is closed, dereferencing a freed callback and triggering a use after free. This...

3 affected packages

freerdp, freerdp2, freerdp3

Package 24.04 LTS
freerdp Not in release
freerdp2 Needs evaluation
freerdp3 Needs evaluation
Show less packages

CVE-2026-23948

Medium priority
Needs evaluation

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.22.0, a NULL pointer dereference vulnerability in rdp_write_logon_info_v2() allows a malicious RDP server to crash FreeRDP proxy by sending a specially...

3 affected packages

freerdp, freerdp2, freerdp3

Package 24.04 LTS
freerdp Not in release
freerdp2 Needs evaluation
freerdp3 Needs evaluation
Show less packages

CVE-2026-24095

Medium priority

Not in release

Improper permission enforcement in Checkmk versions 2.4.0 before 2.4.0p21, 2.3.0 before 2.3.0p43, and 2.2.0 (EOL) allows users with the "Use WATO" permission to access the "Analyze configuration" page by directly navigating to its...

1 affected package

check-mk

Package 24.04 LTS
check-mk Not in release
Show less packages

CVE-2026-24027

Medium priority
Needs evaluation

Crafted zones can lead to increased incoming network traffic.

1 affected package

pdns-recursor

Package 24.04 LTS
pdns-recursor Needs evaluation
Show less packages

CVE-2026-0398

Medium priority
Needs evaluation

Crafted zones can lead to increased resource usage and crafted CNAME chains can lead to cache poisoning in Recursor.

1 affected package

pdns-recursor

Package 24.04 LTS
pdns-recursor Needs evaluation
Show less packages

CVE-2025-59024

Medium priority
Needs evaluation

Crafted delegations or IP fragments can poison cached delegations in Recursor.

1 affected package

pdns-recursor

Package 24.04 LTS
pdns-recursor Needs evaluation
Show less packages