freerdp

167 tracked vulnerabilities.

CVE-2026-25997 CRITICAL
FreeRDP < 3.23.0 - Use-After-Free in Clipboard Format Handling
Feb 25, 2026
CVSS 9.8
EPSS 0.00
CVE-2026-25959 CRITICAL
FreeRDP < 3.23.0 - Use-After-Free in Clipboard Data Handling
Feb 25, 2026
CVSS 9.8
EPSS 0.00
CVE-2026-25955 CRITICAL
FreeRDP < 3.23.0 - Use-After-Free in xf_AppUpdateWindowFromSurface
Feb 25, 2026
CVSS 9.8
EPSS 0.00
CVE-2026-25954 HIGH
FreeRDP < 3.23.0 - Use-After-Free in xf_rail_server_local_move_size
Feb 25, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-25953 CRITICAL
FreeRDP < 3.23.0 - Use-After-Free in xf_rail Window Handling
Feb 25, 2026
CVSS 9.8
EPSS 0.00
CVE-2026-25952 CRITICAL
FreeRDP < 3.23.0 - Use-After-Free in xf_SetWindowMinMaxInfo
Feb 25, 2026
CVSS 9.8
EPSS 0.00
CVE-2026-25942 HIGH
FreeRDP <3.23.0 - Memory Corruption
Feb 25, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-25941 MEDIUM
FreeRDP 2.0.0-2.11.7 - Out-of-bounds Read via RDPGFX WIRE_TO_SURFACE_2 PDU
Feb 25, 2026
CVSS 4.3
EPSS 0.00
CVE-2026-24684 HIGH
FreeRDP < 3.22.0 - Use-After-Free in RDPSND Async Playback Thread
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-24683 HIGH
FreeRDP < 3.22.0 - Use-After-Free in ainput_send_input_event
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-24682 HIGH
FreeRDP < 3.22.0 - Heap-based Buffer Overflow in audin_server_recv_formats
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-24681 HIGH
FreeRDP < 3.22.0 - Use-After-Free in URBDRC Channel Callback
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-24680 HIGH
FreeRDP < 3.22.0 - Use-After-Free in sdl_Pointer_New
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-24679 CRITICAL
FreeRDP < 3.22.0 - Heap-based Buffer Overflow in URBDRC Client Interface Handling
Feb 09, 2026
CVSS 9.1
EPSS 0.00
CVE-2026-24678 HIGH
FreeRDP < 3.22.0 - Use-After-Free in ecam_channel_write
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-24677 CRITICAL
FreeRDP <3.22.0 - Memory Corruption
Feb 09, 2026
CVSS 9.1
EPSS 0.00
CVE-2026-24676 HIGH
FreeRDP < 3.22.0 - Use-After-Free in AUDIN Format Renegotiation
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-24675 HIGH
FreeRDP < 3.22.0 - Use-After-Free in urb_select_interface
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-24491 HIGH
FreeRDP < 3.22.0 - Use-After-Free via Video Timer Notification
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-23948 HIGH
FreeRDP < 3.22.0 - Denial of Service via Malformed LogonInfoV2 PDU
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-23884 CRITICAL
FreeRDP < 3.21.0 - Use-After-Free in Offscreen Bitmap Deletion
Jan 19, 2026
CVSS 9.8
EPSS 0.00
CVE-2026-23883 CRITICAL
FreeRDP < 3.21.0 - Use-After-Free in xf_Pointer_New
Jan 19, 2026
CVSS 9.8
EPSS 0.00
CVE-2026-23732 HIGH
FreeRDP < 3.21.0 - Heap-based Buffer Overflow via FastGlyph Parsing
Jan 19, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-23534 CRITICAL
FreeRDP < 3.21.0 - Heap-based Buffer Overflow in ClearCodec Bands Decode Path
Jan 19, 2026
CVSS 9.8
EPSS 0.00
CVE-2026-23533 CRITICAL
FreeRDP < 3.21.0 - Heap-based Buffer Overflow in RDPGFX ClearCodec Decode Path
Jan 19, 2026
CVSS 9.8
EPSS 0.00