Freerdp

Freerdp

239 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.51%
  • Veröffentlicht 29.05.2026 19:40:25
  • Zuletzt bearbeitet 27.07.2026 13:18:07

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.26.0, a malicious RDP server can trigger a heap-buffer-overflow write in the FreeRDP client by sending crafted RDPGFX PDUs. The bug is in gdi_CacheToSurface: it validates a d...

Exploit
  • EPSS 1.04%
  • Veröffentlicht 26.05.2026 14:08:47
  • Zuletzt bearbeitet 27.07.2026 13:17:55

FreeRDP before 3.26.0 contains a heap-buffer-overflow vulnerability in gdi_CacheToSurface that allows remote attackers to write out-of-bounds heap memory. The vulnerability occurs because rectangle validation clamps coordinates to UINT16_MAX but perf...

Exploit
  • EPSS 0.2%
  • Veröffentlicht 24.04.2026 02:24:50
  • Zuletzt bearbeitet 27.04.2026 17:44:02

FreeRDP is a free implementation of the Remote Desktop Protocol. Versions prior to 3.25.0 have an off-by-one in the path traversal filter in `channels/drive/client/drive_file.c`. The `contains_dotdot()` function catches `../` and `..\` mid-path but m...

  • EPSS 0.28%
  • Veröffentlicht 30.03.2026 21:43:49
  • Zuletzt bearbeitet 01.04.2026 18:35:09

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, a double-free vulnerability in kerberos_AcceptSecurityContext() and kerberos_InitializeSecurityContextA() (WinPR, winpr/libwinpr/sspi/Kerberos/kerberos.c) can c...

  • EPSS 0.1%
  • Veröffentlicht 30.03.2026 21:43:39
  • Zuletzt bearbeitet 01.04.2026 18:44:43

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, in persistent_cache_read_entry_v3() in libfreerdp/cache/persistent.c, persistent->bmpSize is updated before winpr_aligned_recalloc(). If realloc fails, bmpSize ...

  • EPSS 0.27%
  • Veröffentlicht 30.03.2026 21:43:21
  • Zuletzt bearbeitet 15.07.2026 02:20:27

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, in yuv_ensure_buffer() in libfreerdp/codec/h264.c, h264->width and h264->height are updated before the reallocation loop. If any winpr_aligned_recalloc() call f...

  • EPSS 0.21%
  • Veröffentlicht 30.03.2026 21:43:13
  • Zuletzt bearbeitet 01.04.2026 20:01:13

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, pixel data from adjacent heap memory is rendered to screen, potentially leaking sensitive data to the attacker. This issue has been patched in version 3.24.2.

  • EPSS 0.4%
  • Veröffentlicht 30.03.2026 21:42:57
  • Zuletzt bearbeitet 15.07.2026 02:20:27

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, in resize_vbar_entry() in libfreerdp/codec/clear.c, vBarEntry->size is updated to vBarEntry->count before the winpr_aligned_recalloc() call. If realloc fails, s...

  • EPSS 0.43%
  • Veröffentlicht 30.03.2026 21:42:27
  • Zuletzt bearbeitet 15.07.2026 02:20:26

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, progressive_decompress_tile_upgrade() detects a mismatch via progressive_rfx_quant_cmp_equal() but only emits WLog_WARN, execution continues. The wrapped value ...

  • EPSS 0.19%
  • Veröffentlicht 30.03.2026 21:42:11
  • Zuletzt bearbeitet 01.04.2026 20:04:25

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, there is a heap-buffer-overflow READ vulnerability at 24 bytes before the allocation, in winpr_aligned_offset_recalloc(). This issue has been patched in version...