CVE-2026-22859 | FreeRDP up to 3.20.0 MSUSB_INTERFACE_DESCRIPTOR out-of-bounds (GHSA-56f5-76qv-2r36 / EUVD-2026-2668)
A vulnerability classified as problematic was found in FreeRDP up to 3.20.0. The affected element is an unknown function. Such manipulation of the argument MSUSB_INTERFACE_DESCRIPTOR leads to out-of-bounds read.
This vulnerability is listed as CVE-2026-22859. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is advised.