What is CVE-2026-67288?
CVE-2026-67288 is a null pointer dereference vulnerability in FreeRDP versions prior to 3.29.0, located in smartcard cache request decoders handling NULL NDR pointers for LookupName in SCARD_IOCTL_READCACHEA and SCARD_IOCTL_WRITECACHEA operations. When smartcard emulation is enabled, an attacker can cause a denial of service by sending crafted cache requests. Update FreeRDP to version 3.29.0 or later to address this issue.
Azərbaycanca: CVE-2026-67288 FreeRDP-in 3.29.0 versiyasından əvvəlki versiyalarında smartcard keş əməliyyatlarında 'null pointer dereference' zəifliyidir. Smartcard emulyasiyası aktiv olduqda, uzaqdan hücum edən xüsusi hazırlanmış SCARD_IOCTL_READCACHEA/WRITECACHEA sorğuları göndərərək xidmətdən imtina (crash) yarada bilər. Təsirlənən FreeRDP versiyalarını 3.29.0 və ya daha yenisinə yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-476; shared vendor: FreeRDP
FAQ2
Which versions of FreeRDP are affected by CVE-2026-67288?
This vulnerability affects FreeRDP versions prior to 3.29.0.
How can an attacker exploit CVE-2026-67288 to cause a denial of service?
An attacker can cause a denial of service by sending crafted SCARD_IOCTL_READCACHEA or SCARD_IOCTL_WRITECACHEA requests when smartcard emulation is enabled.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.