[Git][security-tracker-team/security-tracker][master] Add two new freerdp3 issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sun Aug 2 17:51:10 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a074ff6d by Salvatore Bonaccorso at 2026-08-02T18:50:31+02:00
Add two new freerdp3 issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -193,6 +193,14 @@ CVE-2026-67308 (Wazuh workflows before 44bf114 contain a shell injection vulnera
 	NOT-FOR-US: Wazuh
 CVE-2026-67307 (Wazuh 5.0.0-beta1 (fixed in 5.0.0-beta3) does not validate or override ...)
 	NOT-FOR-US: Wazuh
+CVE-2026-68580
+	- freerdp3 3.29.0+dfsg-1
+	- freerdp2 <removed>
+	NOTE: https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-69xf-pqrw-596x
+CVE-2026-68579
+	- freerdp3 3.30.0+dfsg-1
+	- freerdp2 <removed>
+	NOTE: https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-m37j-jcr2-8gcc
 CVE-2026-67306 (FreeRDP versions 3.28.0 and earlier contain an out-of-bounds read vuln ...)
 	- freerdp3 3.29.0+dfsg-1
 	- freerdp2 <removed>



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a074ff6db6c3bd21cb26b94f3520774fb0e58806

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a074ff6db6c3bd21cb26b94f3520774fb0e58806
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260802/72f0bf0d/attachment.htm>


More information about the debian-security-tracker-commits mailing list