Threat Intel

v0.1

← CVEs

CVE-2026-24684

HIGH 7.5
Published
2026-02-09
Last Modified
2026-02-10
Affected Apps
1
Affected Devices
1
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.22.0, the RDPSND async playback thread can process queued PDUs after the channel is closed and internal state is freed, leading to a use after free in rdpsnd_treat_wave. This vulnerability is fixed in 3.22.0.
Affected Applications in Environment 1
freerdp v2.1.1-5.el7_9
1 device
Affected Devices 1
guru.cluster Linux
References 3