Skip to content
Threat Feed

Product

FreeRDP

5 briefs RSS
high advisory

Out-of-Bounds Memory Corruption in FreeRDP

FreeRDP versions before 3.30.0 are vulnerable to memory corruption in the kerberos_DecryptMessage function, allowing a malicious peer to perform out-of-bounds read and write operations via crafted GSS Wrap tokens during authentication.

FreeRDP +1
1t 2c updated
critical advisory

Heap-based Buffer Overflow in FreeRDP Windows Clipboard Client

A heap-based buffer overflow in FreeRDP versions 3.29.0 and earlier allows a malicious RDP server to execute an out-of-bounds write in the memory of a paste consumer process when handling clipboard file transfers.

FreeRDP vulnerability remote-access windows rdp
1c
high advisory

FreeRDP Denial of Service via Smartcard Cache Request

A null pointer dereference vulnerability in FreeRDP prior to 3.29.0 allows remote attackers to trigger a crash in the client process via crafted smartcard cache requests.

FreeRDP +1 denial-of-service vulnerability remote-execution
2t 6c
high threat

FreeRDP: Vulnerability Enables Remote Code Execution

A high-severity vulnerability in the FreeRDP software allows a remote, unauthenticated attacker to execute arbitrary code on systems running FreeRDP, enabling system compromise without prior authentication.

FreeRDP Anonymous Attacker vulnerability remote-code-execution bsi
2t
high advisory

FreeRDP: Multiple Vulnerabilities

Multiple vulnerabilities in FreeRDP allow an attacker to execute arbitrary code, bypass security controls, disclose sensitive information, tamper with data, or cause a denial-of-service, posing a high risk to systems using the software.

FreeRDP vulnerability remote-desktop rce denial-of-service
3t