[Git][security-tracker-team/security-tracker][master] Add two new freerdp3 issues
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sun Aug 2 17:51:10 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
a074ff6d by Salvatore Bonaccorso at 2026-08-02T18:50:31+02:00
Add two new freerdp3 issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -193,6 +193,14 @@ CVE-2026-67308 (Wazuh workflows before 44bf114 contain a shell injection vulnera
NOT-FOR-US: Wazuh
CVE-2026-67307 (Wazuh 5.0.0-beta1 (fixed in 5.0.0-beta3) does not validate or override ...)
NOT-FOR-US: Wazuh
+CVE-2026-68580
+ - freerdp3 3.29.0+dfsg-1
+ - freerdp2 <removed>
+ NOTE: https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-69xf-pqrw-596x
+CVE-2026-68579
+ - freerdp3 3.30.0+dfsg-1
+ - freerdp2 <removed>
+ NOTE: https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-m37j-jcr2-8gcc
CVE-2026-67306 (FreeRDP versions 3.28.0 and earlier contain an out-of-bounds read vuln ...)
- freerdp3 3.29.0+dfsg-1
- freerdp2 <removed>
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a074ff6db6c3bd21cb26b94f3520774fb0e58806
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a074ff6db6c3bd21cb26b94f3520774fb0e58806
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260802/72f0bf0d/attachment.htm>
More information about the debian-security-tracker-commits
mailing list