Freerdp

Freerdp

239 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.37%
  • Veröffentlicht 19.08.2026 17:45:47
  • Zuletzt bearbeitet 22.09.2026 19:44:08

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, the glyph_cache_get function in libfreerdp/cache/glyph.c checks whether index is greater than cache->number instead of greater than or equal to it. A malicious RDP serv...

Exploit
  • EPSS 0.63%
  • Veröffentlicht 19.08.2026 17:44:52
  • Zuletzt bearbeitet 22.09.2026 19:47:02

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, FreeRDP clients that negotiate RDPGFX AVC444 with an H.264 decoder backend calculate the intermediate YUV444 allocation size in libfreerdp/codec/h264.c with 32-bit mult...

Exploit
  • EPSS 0.35%
  • Veröffentlicht 11.08.2026 19:49:46
  • Zuletzt bearbeitet 25.09.2026 14:59:03

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.30.0, FreeRDP's winpr/libwinpr/sspi/Kerberos/kerberos.c kerberos_DecryptMessage function fails to bound the peer-controlled GSS Wrap-token EC field before using it with RRC i...

Exploit
  • EPSS 0.38%
  • Veröffentlicht 11.08.2026 19:47:27
  • Zuletzt bearbeitet 25.09.2026 15:14:39

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.30.0, FreeRDP server-side RDSTLS in libfreerdp/core/rdstls.c accepts an attacker-supplied RDSTLS_TYPE_CAPABILITIES PDU while rdstls_server_authenticate is waiting for RDSTLS_...

  • EPSS 0.44%
  • Veröffentlicht 11.08.2026 12:17:00
  • Zuletzt bearbeitet 12.08.2026 17:17:31

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority as it's a duplicate of CVE-2026-73241.

  • EPSS 0.36%
  • Veröffentlicht 11.08.2026 12:16:59
  • Zuletzt bearbeitet 12.08.2026 17:17:31

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority as it's a duplicate of CVE-2026-73242.

Exploit
  • EPSS 0.24%
  • Veröffentlicht 02.08.2026 12:15:27
  • Zuletzt bearbeitet 29.09.2026 16:16:59

FreeRDP before 3.29.0 contains integer overflow vulnerabilities in the audio input redirection channel (audin) across ALSA, sndio, WinMM, and OpenSL ES backends that fail to validate the FramesPerPacket parameter from RDP servers. Attackers can suppl...

  • EPSS 0.27%
  • Veröffentlicht 02.08.2026 12:15:26
  • Zuletzt bearbeitet 29.09.2026 16:17:08

FreeRDP before 3.30.0 (<= 3.29.0) contains a heap-based buffer overflow in the Windows clipboard client's CliprdrStream_Read function (client/Windows/wf_cliprdr.c). When an OLE paste consumer (e.g. explorer.exe) calls IStream::Read with a fixed-size ...

Exploit
  • EPSS 0.15%
  • Veröffentlicht 01.08.2026 12:22:18
  • Zuletzt bearbeitet 03.09.2026 19:45:40

FreeRDP before 3.29.0 contains an out-of-bounds heap read vulnerability in the UVC H.264 extension-unit parser that fails to validate descriptor length before accessing the GUID field. A local attacker with a malicious USB video camera can trigger a ...

  • EPSS 0.35%
  • Veröffentlicht 01.08.2026 12:22:18
  • Zuletzt bearbeitet 03.09.2026 19:38:52

FreeRDP before 3.29.0 contains a null pointer dereference vulnerability in smartcard cache request decoders that accept NULL NDR pointers for LookupName in SCARD_IOCTL_READCACHEA and SCARD_IOCTL_WRITECACHEA operations. When smartcard emulation is ena...