FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.22.0, A capture thread sends sample responses using a freed channel callback after a device channel close, leading to a use after free in ecam_channel_write. This vulnerability is fixed in 3.22.0.
References
Configurations
History
No history.
Information
Published : 2026-02-09 19:15
Updated : 2026-07-15 02:18
NVD link : CVE-2026-24678
Mitre link : CVE-2026-24678
CVE.ORG link : CVE-2026-24678
JSON object : View
Products Affected
freerdp
- freerdp
