freerdp
167 tracked vulnerabilities.
CVE-2026-25997
CRITICAL
FreeRDP < 3.23.0 - Use-After-Free in Clipboard Format Handling
Feb 25, 2026
CVSS 9.8
EPSS 0.00
CVE-2026-25959
CRITICAL
FreeRDP < 3.23.0 - Use-After-Free in Clipboard Data Handling
Feb 25, 2026
CVSS 9.8
EPSS 0.00
CVE-2026-25955
CRITICAL
FreeRDP < 3.23.0 - Use-After-Free in xf_AppUpdateWindowFromSurface
Feb 25, 2026
CVSS 9.8
EPSS 0.00
CVE-2026-25954
HIGH
FreeRDP < 3.23.0 - Use-After-Free in xf_rail_server_local_move_size
Feb 25, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-25953
CRITICAL
FreeRDP < 3.23.0 - Use-After-Free in xf_rail Window Handling
Feb 25, 2026
CVSS 9.8
EPSS 0.00
CVE-2026-25952
CRITICAL
FreeRDP < 3.23.0 - Use-After-Free in xf_SetWindowMinMaxInfo
Feb 25, 2026
CVSS 9.8
EPSS 0.00
CVE-2026-25942
HIGH
FreeRDP <3.23.0 - Memory Corruption
Feb 25, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-25941
MEDIUM
FreeRDP 2.0.0-2.11.7 - Out-of-bounds Read via RDPGFX WIRE_TO_SURFACE_2 PDU
Feb 25, 2026
CVSS 4.3
EPSS 0.00
CVE-2026-24684
HIGH
FreeRDP < 3.22.0 - Use-After-Free in RDPSND Async Playback Thread
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-24683
HIGH
FreeRDP < 3.22.0 - Use-After-Free in ainput_send_input_event
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-24682
HIGH
FreeRDP < 3.22.0 - Heap-based Buffer Overflow in audin_server_recv_formats
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-24681
HIGH
FreeRDP < 3.22.0 - Use-After-Free in URBDRC Channel Callback
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-24680
HIGH
FreeRDP < 3.22.0 - Use-After-Free in sdl_Pointer_New
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-24679
CRITICAL
FreeRDP < 3.22.0 - Heap-based Buffer Overflow in URBDRC Client Interface Handling
Feb 09, 2026
CVSS 9.1
EPSS 0.00
CVE-2026-24678
HIGH
FreeRDP < 3.22.0 - Use-After-Free in ecam_channel_write
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-24677
CRITICAL
FreeRDP <3.22.0 - Memory Corruption
Feb 09, 2026
CVSS 9.1
EPSS 0.00
CVE-2026-24676
HIGH
FreeRDP < 3.22.0 - Use-After-Free in AUDIN Format Renegotiation
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-24675
HIGH
FreeRDP < 3.22.0 - Use-After-Free in urb_select_interface
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-24491
HIGH
FreeRDP < 3.22.0 - Use-After-Free via Video Timer Notification
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-23948
HIGH
FreeRDP < 3.22.0 - Denial of Service via Malformed LogonInfoV2 PDU
Feb 09, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-23884
CRITICAL
FreeRDP < 3.21.0 - Use-After-Free in Offscreen Bitmap Deletion
Jan 19, 2026
CVSS 9.8
EPSS 0.00
CVE-2026-23883
CRITICAL
FreeRDP < 3.21.0 - Use-After-Free in xf_Pointer_New
Jan 19, 2026
CVSS 9.8
EPSS 0.00
CVE-2026-23732
HIGH
FreeRDP < 3.21.0 - Heap-based Buffer Overflow via FastGlyph Parsing
Jan 19, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-23534
CRITICAL
FreeRDP < 3.21.0 - Heap-based Buffer Overflow in ClearCodec Bands Decode Path
Jan 19, 2026
CVSS 9.8
EPSS 0.00
CVE-2026-23533
CRITICAL
FreeRDP < 3.21.0 - Heap-based Buffer Overflow in RDPGFX ClearCodec Decode Path
Jan 19, 2026
CVSS 9.8
EPSS 0.00
Products
Quick Filters