Vendor
Out-of-Bounds Memory Corruption in FreeRDP
1 TTP 2 CVEsFreeRDP versions before 3.30.0 are vulnerable to memory corruption in the kerberos_DecryptMessage function, allowing a malicious peer to perform out-of-bounds read and write operations via crafted GSS Wrap tokens during authentication.
Heap-based Buffer Overflow in FreeRDP Windows Clipboard Client
1 CVEA heap-based buffer overflow in FreeRDP versions 3.29.0 and earlier allows a malicious RDP server to execute an out-of-bounds write in the memory of a paste consumer process when handling clipboard file transfers.
Heap Out-of-Bounds Read in FreeRDP Glyph Caching
1 TTP 1 CVEFreeRDP versions 3.28.0 and earlier are vulnerable to a heap out-of-bounds read during the processing of malicious RDP server glyph fragments, allowing for potential client-side crashes or information disclosure.
FreeRDP Denial of Service via Smartcard Cache Request
2 TTPs 6 CVEsA null pointer dereference vulnerability in FreeRDP prior to 3.29.0 allows remote attackers to trigger a crash in the client process via crafted smartcard cache requests.
CVE-2026-67289: CRLF Injection Vulnerability in FreeRDP
2 TTPs 1 CVEFreeRDP versions through 3.28.0 fail to sanitize control characters in RDP redirection fields, allowing malicious servers to perform HTTP request smuggling or header injection against proxy servers.
FreeRDP: Vulnerability Enables Remote Code Execution
2 TTPsA high-severity vulnerability in the FreeRDP software allows a remote, unauthenticated attacker to execute arbitrary code on systems running FreeRDP, enabling system compromise without prior authentication.
CVE-2026-56297 - FreeRDP Use-After-Free Vulnerability Leading to RCE/DoS
2 TTPs 1 CVEA use-after-free vulnerability (CVE-2026-56297) in the FreeRDP client before version 3.22.0 allows a malicious RDP server to achieve remote code execution or denial of service on connecting clients by triggering a race condition through concurrent DYNVC_DATA and DYNVC_CLOSE messages.