CVE-2026-33987
published 2026-03-30CVE-2026-33987: FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, in persistent_cache_read_entry_v3() in libfreerdp/cache/persistent.c…
PriorityP428medium6.6CVSS 3.1
AVLACLPRLUIRSUCNIHAH
EPSS
0.10%
1.0th percentile
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, in persistent_cache_read_entry_v3() in libfreerdp/cache/persistent.c, persistent->bmpSize is updated before winpr_aligned_recalloc(). If realloc fails, bmpSize is inflated while bmpData points to the old buffer. This issue has been patched in version 3.24.2.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | freerdp2 | < freerdp3 3.24.2+dfsg-1 (forky) | freerdp3 3.24.2+dfsg-1 (forky) |
| debian | freerdp3 | < freerdp3 3.24.2+dfsg-1 (forky) | freerdp3 3.24.2+dfsg-1 (forky) |
| freerdp | freerdp | < 3.24.2 | 3.24.2 |
| ubuntu | freerdp3 | — | — |
CVSS provenance
nvdv3.16.6MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:H
osv6.6MEDIUM
vendor_debian7.1HIGH
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
FreeRDP vulnerabilities
vendor_ubuntu·2026-07-20
CVE-2026-33995 FreeRDP vulnerabilities
Title: FreeRDP vulnerabilities
Summary: Several security issues were fixed in FreeRDP.
It was discovered that FreeRDP contained multiple security issues. An
attacker could possibly use these issues to obtain sensitive information,
cause FreeRDP to crash, resulting in a denial of service, or execute
arbitrary code.
Instructions: This update uses a new upstream release, which includes additional bug
fixes. In general, a standard system update will make all the necessary
changes.
Red Hat
FreeRDP: FreeRDP: Memory corruption vulnerability allows denial of service or arbitrary code execution
vendor_redhat·2026-03-30·CVSS 7.1
CVE-2026-33987 [HIGH] CWE-131 FreeRDP: FreeRDP: Memory corruption vulnerability allows denial of service or arbitrary code execution
FreeRDP: FreeRDP: Memory corruption vulnerability allows denial of service or arbitrary code execution
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, in persistent_cache_read_entry_v3() in libfreerdp/cache/persistent.c, persistent->bmpSize is updated before winpr_aligned_recalloc(). If realloc fails, bmpSize is inflated while bmpData points to the old buffer. This issue has been patched in version 3.24.2.
A flaw was found in FreeRDP, a free implementation of the Remote Desktop Protocol. A memory corruption vulnerability exists in the persistent cache handling. If a memory reallocation fails, an internal size variable is incorrectly updated, while the data pointer still refers to the original, smaller memory block. This can allow a local attacker
Debian
CVE-2026-33987: freerdp2 - FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to versio...
vendor_debian·2026·CVSS 7.1
CVE-2026-33987 [HIGH] CVE-2026-33987: freerdp2 - FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to versio...
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, in persistent_cache_read_entry_v3() in libfreerdp/cache/persistent.c, persistent->bmpSize is updated before winpr_aligned_recalloc(). If realloc fails, bmpSize is inflated while bmpData points to the old buffer. This issue has been patched in version 3.24.2.
Scope: local
bookworm: open
bullseye: open
OSV
CVE-2026-33987: FreeRDP is a free implementation of the Remote Desktop Protocol
osv·2026-03-30·CVSS 6.6
CVE-2026-33987 [MEDIUM] CVE-2026-33987: FreeRDP is a free implementation of the Remote Desktop Protocol
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, in persistent_cache_read_entry_v3() in libfreerdp/cache/persistent.c, persistent->bmpSize is updated before winpr_aligned_recalloc(). If realloc fails, bmpSize is inflated while bmpData points to the old buffer. This issue has been patched in version 3.24.2.
No detection rules found.
No public exploits indexed.
Wiz
CVE-2026-26514 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2026-26514 [HIGH] CVE-2026-26514 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-26514 :
Linux Alpine vulnerability analysis and mitigation
An Argument Injection vulnerability exists in bird-lg-go before commit 6187a4e. The traceroute module uses shlex.Split to parse user input without validation, allowing remote attackers to inject arbitrary flags (e.g., -w, -q) via the q parameter. This can be exploited to cause a Denial of Service (DoS) by exhausting system resources.
Source : NVD
## 7.5
Score
Published March 4, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 38.4
Exploitation Probability (EPSS) 0.2
Affected packages and libraries
bird-lg-go
Sources
NVD
Alpine 3.18, 3.19, 3.20
Wiz
CVE-2025-63658 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-63658 [HIGH] CVE-2025-63658 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-63658 :
Linux Alpine vulnerability analysis and mitigation
A stack overflow in the mk_http_index_lookup function (mk_server/mk_http.c) of monkey commit f37e984 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request to the server.
Source : NVD
## 7.5
Score
Published January 29, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 55.3
Exploitation Probability (EPSS) 0.3
Affected packages and libraries
monkey
Sources
NVD
Alpine 3.10, 3.11, 3.12, 3.13, 3.14, 3.15, 3.16, 3.17, 3.18 Severity HIGH No Fix Added at: Feb 15, 2026
## Get a CVE risk assessment
Get a prioritized vi
Wiz
CVE-2025-63651 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-63651 [HIGH] CVE-2025-63651 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-63651 :
Linux Alpine vulnerability analysis and mitigation
A use-after-free in the mk_string_char_search function (mk_core/mk_string.c) of monkey commit f37e984 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request to the server.
Source : NVD
## 7.5
Score
Published January 29, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 75.7
Exploitation Probability (EPSS) 0.9
Affected packages and libraries
monkey
Sources
NVD
Alpine 3.10, 3.11, 3.12, 3.13, 3.14, 3.15, 3.16, 3.17, 3.18 Severity HIGH No Fix Added at: Feb 20, 2026
## Get a CVE risk assessment
Get a prioritized v
Wiz
CVE-2025-65203 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.1
CVE-2025-65203 [HIGH] CVE-2025-65203 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-65203 :
Linux Alpine vulnerability analysis and mitigation
KeePassXC-Browser thru 1.9.9.2 autofills or prompts to fill stored credentials into documents rendered under a browser-enforced CSP directive and iframe attribute sandbox, allowing attacker-controlled script in the sandboxed document to access populated form fields and exfiltrate credentials.
Source : NVD
## 7.1
Score
Published December 17, 2025
Severity HIGH
CNA Score 7.1
Affected Technologies
Linux Alpine
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 5.2
Exploitation Probability (EPSS) N/A
Affected packages and libraries
keepassxc-browser
Sources
NVD
Alpine 3.23 Severity HIGH No Fix Added at: Jan 28, 2026
Wiz
CVE-2026-33987 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 5.1
CVE-2026-33987 [MEDIUM] CVE-2026-33987 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-33987 :
NixOS vulnerability analysis and mitigation
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, in persistent_cache_read_entry_v3() in libfreerdp/cache/persistent.c, persistent->bmpSize is updated before winpr_aligned_recalloc(). If realloc fails, bmpSize is inflated while bmpData points to the old buffer. This issue has been patched in version 3.24.2.
Source : NVD
## 6.6
Score
Published March 30, 2026
Severity MEDIUM
CNA Score 7.1
Affected Technologies
NixOS
Wolfi
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 2.2
Exploitation Probability (EPSS) N/A
Affected packages and libraries
freerdp-server-debuginfo
libwinpr
Source
Wiz
CVE-2025-63649 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-63649 [HIGH] CVE-2025-63649 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-63649 :
Linux Alpine vulnerability analysis and mitigation
An out-of-bounds read in the http_parser_transfer_encoding_chunked function (mk_server/mk_http_parser.c) of monkey commit f37e984 allows attackers to cause a Denial of Service (DoS) via sending a crafted POST request to the server.
Source : NVD
## 7.5
Score
Published January 29, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 6.5
Exploitation Probability (EPSS) N/A
Affected packages and libraries
monkey
Sources
NVD
Alpine 3.10, 3.11, 3.12, 3.13, 3.14, 3.15, 3.16, 3.17, 3.18 Severity HIGH No Fix Added at: Feb 20, 2026
## Get a CVE risk asses
Wiz
CVE-2025-53470 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 3.1
CVE-2025-53470 [LOW] CVE-2025-53470 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-53470 :
Linux Alpine vulnerability analysis and mitigation
Out-of-bounds Read vulnerability in Apache NimBLE HCI H4 driver. Specially crafted HCI event could lead to invalid memory read in H4 driver.
This issue affects Apache NimBLE: through 1.8.
This issue requires a broken or bogus Bluetooth controller and thus severity is considered low.
Users are recommended to upgrade to version 1.9, which fixes the issue.
Source : NVD
## 3.1
Score
Published January 10, 2026
Severity LOW
CNA Score 3.1
Affected Technologies
Linux Alpine
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 5.8
Exploitation Probability (EPSS) N/A
Affected packages and libraries
nimble
Sources
NVD
Alpi
Wiz
CVE-2025-63657 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-63657 [HIGH] CVE-2025-63657 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-63657 :
Linux Alpine vulnerability analysis and mitigation
An out-of-bounds read in the mk_mimetype_find function (mk_server/mk_mimetype.c) of monkey commit f37e984 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request to the server.
Source : NVD
## 7.5
Score
Published January 29, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 76.6
Exploitation Probability (EPSS) 1
Affected packages and libraries
monkey
Sources
NVD
Alpine 3.10, 3.11, 3.12, 3.13, 3.14, 3.15, 3.16, 3.17, 3.18 Severity HIGH No Fix Added at: Feb 15, 2026
## Get a CVE risk assessment
Get a prioritized
Wiz
CVE-2025-63655 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-63655 [HIGH] CVE-2025-63655 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-63655 :
Linux Alpine vulnerability analysis and mitigation
A NULL pointer dereference in the mk_http_range_parse function (mk_server/mk_http.c) of monkey commit f37e984 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request to the server.
Source : NVD
## 7.5
Score
Published January 29, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 76.4
Exploitation Probability (EPSS) 1
Affected packages and libraries
monkey
Sources
NVD
Alpine 3.10, 3.11, 3.12, 3.13, 3.14, 3.15, 3.16, 3.17, 3.18 Severity HIGH No Fix Added at: Feb 15, 2026
## Get a CVE risk assessment
Get a priorit
Wiz
CVE-2025-58151 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-58151 [HIGH] CVE-2025-58151 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-58151 :
Linux Alpine vulnerability analysis and mitigation
[varstored: TOCTOU issues with mapped guest memory]
Source : NVD
Published February 5, 2026
CNA Score N/A
Affected Technologies
Linux Alpine
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) N/A
Exploitation Probability (EPSS) N/A
Affected packages and libraries
xen
Sources
NVD
Alpine 3.20, 3.21, 3.22, 3.23, edge Has Fix Added at: Jan 28, 2026
## Get a CVE risk assessment
Get a prioritized view of CVEs in your cloud—so you can focus on what's exploitable, not just what's listed.
## Related Linux Alpine vulnerabilities:
CVE ID
Severity
Score
Technologies
Component name
CISA KEV exploit
Has fix
Published
Wiz
CVE-2026-24044 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 9.2
CVE-2026-24044 [CRITICAL] CVE-2026-24044 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-24044 :
Linux Alpine vulnerability analysis and mitigation
Element Server Suite Community Edition (ESS Community) deploys a Matrix stack using the provided Helm charts and Kubernetes distribution. The ESS Community Helm Chart secrets initialization hook (using matrix-tools container before 0.5.7) is using an insecure Matrix server key generation method, allowing network attackers to potentially recreate the same key pair, allowing them to impersonate the victim server. The secret is generated by the secrets initialization hook, in the ESS Community Helm Chart values, if both initSecrets.enabled is not set to false and synapse.signingKey is not defined. Given a server key in Matrix authenticates both requests originating from and events constructed on a given server, this pote
Wiz
CVE-2025-53477 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-53477 [HIGH] CVE-2025-53477 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-53477 :
Linux Alpine vulnerability analysis and mitigation
NULL Pointer Dereference vulnerability in Apache Nimble.
Missing validation of HCI connection complete or HCI command TX buffer could lead to NULL pointer dereference.
This issue requires disabled asserts and broken or bogus Bluetooth controller and thus severity is considered low.
This issue affects Apache NimBLE: through 1.8.0.
Users are recommended to upgrade to version 1.9.0, which fixes the issue.
Source : NVD
## 7.5
Score
Published January 10, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 58.2
Exploitation Probability (EPSS) 0.4
Affecte
Wiz
CVE-2025-52435 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-52435 [HIGH] CVE-2025-52435 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-52435 :
Linux Alpine vulnerability analysis and mitigation
J2EE Misconfiguration: Data Transmission Without Encryption vulnerability in Apache NimBLE.
Improper handling of Pause Encryption procedure on Link Layer results in a previously encrypted connection being left in un-encrypted state allowing an eavesdropper to observe the remainder of the exchange.
This issue affects Apache NimBLE: through <= 1.8.0.
Users are recommended to upgrade to version 1.9.0, which fixes the issue.
Source : NVD
## 7.5
Score
Published January 10, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 11.2
Exploitation Probability (
Wiz
CVE-2025-63650 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-63650 [HIGH] CVE-2025-63650 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-63650 :
Linux Alpine vulnerability analysis and mitigation
An out-of-bounds read in the mk_ptr_to_buf in mk_core function (mk_memory.c) of monkey commit f37e984 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request to the server.
Source : NVD
## 7.5
Score
Published January 29, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 76.6
Exploitation Probability (EPSS) 1
Affected packages and libraries
monkey
Sources
NVD
Alpine 3.10, 3.11, 3.12, 3.13, 3.14, 3.15, 3.16, 3.17, 3.18 Severity HIGH No Fix Added at: Feb 20, 2026
## Get a CVE risk assessment
Get a prioritized vie
Wiz
CVE-2026-27734 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 6.5
CVE-2026-27734 [MEDIUM] CVE-2026-27734 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-27734 :
Linux Alpine vulnerability analysis and mitigation
../
Source : NVD
## 6.5
Score
Published February 27, 2026
Severity MEDIUM
CNA Score 6.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 3.7
Exploitation Probability (EPSS) N/A
Affected packages and libraries
github.com/henrygd/beszel
beszel
Sources
NVD
Alpine 3.23 Severity MEDIUM No Fix Added at: Mar 04, 2026
GoLang Severity MEDIUM Has Fix Added at: Mar 02, 2026
## Get a CVE risk assessment
Get a prioritized view of CVEs in your cloud—so you can focus on what's exploitable, not just what's listed.
## Related Linux Alpine vulnerabilities:
CVE ID
Severity
Score
Te
Wiz
CVE-2025-63652 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-63652 [HIGH] CVE-2025-63652 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-63652 :
Linux Alpine vulnerability analysis and mitigation
A use-after-free in the mk_http_request_end function (mk_server/mk_http.c) of monkey commit f37e984 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request to the server.
Source : NVD
## 7.5
Score
Published January 29, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 76.6
Exploitation Probability (EPSS) 1
Affected packages and libraries
monkey
Sources
NVD
Alpine 3.10, 3.11, 3.12, 3.13, 3.14, 3.15, 3.16, 3.17, 3.18 Severity HIGH No Fix Added at: Feb 15, 2026
## Get a CVE risk assessment
Get a prioritized view
Wiz
CVE-2026-4167 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2026-4167 [HIGH] CVE-2026-4167 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-4167 :
Linux Alpine vulnerability analysis and mitigation
A vulnerability was determined in Belkin F9K1122 1.00.33. This affects the function formReboot of the file /goform/formReboot. This manipulation of the argument webpage causes stack-based buffer overflow. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.
Source : NVD
## 7.4
Score
Published March 16, 2026
Severity HIGH
CNA Score 7.4
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 14.9
Exploitation Probability (EPSS) N/A
Affected packages and librari
Wiz
CVE-2025-63653 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-63653 [HIGH] CVE-2025-63653 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-63653 :
Linux Alpine vulnerability analysis and mitigation
An out-of-bounds read in the mk_vhost_fdt_close function (mk_server/mk_vhost.c) of monkey commit f37e984 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request to the server.
Source : NVD
## 7.5
Score
Published January 29, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 76.6
Exploitation Probability (EPSS) 1
Affected packages and libraries
monkey
Sources
NVD
Alpine 3.10, 3.11, 3.12, 3.13, 3.14, 3.15, 3.16, 3.17, 3.18 Severity HIGH No Fix Added at: Feb 15, 2026
## Get a CVE risk assessment
Get a prioritized
Wiz
CVE-2025-62235 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 8.1
CVE-2025-62235 [HIGH] CVE-2025-62235 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-62235 :
Linux Alpine vulnerability analysis and mitigation
Authentication Bypass by Spoofing vulnerability in Apache NimBLE.
Receiving specially crafted Security Request could lead to removal of original bond and re-bond with impostor.
This issue affects Apache NimBLE: through 1.8.0.
Users are recommended to upgrade to version 1.9.0, which fixes the issue.
Source : NVD
## 8.1
Score
Published January 10, 2026
Severity HIGH
CNA Score 8.1
Affected Technologies
Linux Alpine
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 13.2
Exploitation Probability (EPSS) N/A
Affected packages and libraries
nimble
Sources
NVD
Alpine 3.15, 3.16, 3.17, 3.18, 3.19, 3.20, 3.21, edge Sever
Wiz
CVE-2025-63656 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-63656 [HIGH] CVE-2025-63656 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-63656 :
Linux Alpine vulnerability analysis and mitigation
An out-of-bounds read in the header_cmp function (mk_server/mk_http_parser.c) of monkey commit f37e984 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request to the server.
Source : NVD
## 7.5
Score
Published January 29, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Linux Alpine
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 76.6
Exploitation Probability (EPSS) 1
Affected packages and libraries
monkey
Sources
NVD
Alpine 3.10, 3.11, 3.12, 3.13, 3.14, 3.15, 3.16, 3.17, 3.18 Severity HIGH No Fix Added at: Feb 15, 2026
## Get a CVE risk assessment
Get a prioritized vi
Bugzilla
CVE-2026-33987 freerdp: FreeRDP: Memory corruption vulnerability allows denial of service or arbitrary code execution [fedora-42]
bugzilla·2026-04-01·CVSS 7.1
CVE-2026-33987 [HIGH] CVE-2026-33987 freerdp: FreeRDP: Memory corruption vulnerability allows denial of service or arbitrary code execution [fedora-42]
CVE-2026-33987 freerdp: FreeRDP: Memory corruption vulnerability allows denial of service or arbitrary code execution [fedora-42]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Discussion:
This bug is already fixed in a published Bodhi update: freerdp-3.24.2-1.fc42
---
This bug is already fixed in a published Bodhi update.
Bugzilla
CVE-2026-33987 freerdp2: FreeRDP: Memory corruption vulnerability allows denial of service or arbitrary code execution [fedora-42]
bugzilla·2026-04-01·CVSS 6.6
CVE-2026-33987 [MEDIUM] CVE-2026-33987 freerdp2: FreeRDP: Memory corruption vulnerability allows denial of service or arbitrary code execution [fedora-42]
CVE-2026-33987 freerdp2: FreeRDP: Memory corruption vulnerability allows denial of service or arbitrary code execution [fedora-42]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Discussion:
This message is a reminder that Fedora Linux 42 is nearing its end of life.
Fedora will stop maintaining and issuing updates for Fedora Linux 42 on 2026-05-13.
It is Fedora's policy to close all bug reports from releases that are no longer
maintained. At that time this bug will be closed as EOL if it remains open with a
'version' of '42'.
Package Maintainer: If you wish for this bug to remain open because you
plan to fix it i
Bugzilla
CVE-2026-33987 freerdp: FreeRDP: Memory corruption vulnerability allows denial of service or arbitrary code execution [fedora-43]
bugzilla·2026-04-01·CVSS 7.1
CVE-2026-33987 [HIGH] CVE-2026-33987 freerdp: FreeRDP: Memory corruption vulnerability allows denial of service or arbitrary code execution [fedora-43]
CVE-2026-33987 freerdp: FreeRDP: Memory corruption vulnerability allows denial of service or arbitrary code execution [fedora-43]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Discussion:
This bug is already fixed in a published Bodhi update: freerdp-3.24.2-1.fc43
---
This bug is already fixed in a published Bodhi update.
Bugzilla
CVE-2026-33987 FreeRDP: FreeRDP: Memory corruption vulnerability allows denial of service or arbitrary code execution
bugzilla·2026-03-30·CVSS 6.6
CVE-2026-33987 [MEDIUM] CVE-2026-33987 FreeRDP: FreeRDP: Memory corruption vulnerability allows denial of service or arbitrary code execution
CVE-2026-33987 FreeRDP: FreeRDP: Memory corruption vulnerability allows denial of service or arbitrary code execution
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, in persistent_cache_read_entry_v3() in libfreerdp/cache/persistent.c, persistent->bmpSize is updated before winpr_aligned_recalloc(). If realloc fails, bmpSize is inflated while bmpData points to the old buffer. This issue has been patched in version 3.24.2.
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 10
Via RHSA-2026:16014 https://access.redhat.com/errata/RHSA-2026:16014
2026-03-30
Published