Vulnerabilities in FreeRDP

211 results
Vexday analysis

Com 147 CVEs catalogadas, o FreeRDP apresenta um volume considerável de vulnerabilidades históricas, embora a taxa de exploração ativa esteja abaixo da média geral do catálogo, sem registros no CISA KEV. O tipo de falha predominante é CWE-125 (leitura fora dos limites de buffer), padrão recorrente em clientes de protocolo remoto e que pode facilitar vazamento de dados ou instabilidade da aplicação. O CVE de maior atenção no momento é CVE-2024-32459, com score EPSS de 0,0375, e a existência de 2 CVEs com PoC pública exige monitoramento contínuo por parte de equipes de resposta. O ritmo de 15 novas CVEs nos últimos 90 dias indica superfície de ataque em expansão ativa, reforçando a necessidade de ciclos de atualização frequentes em ambientes que utilizam esta solução de desktop remoto.

CVE-2026-67288HIGHFreeRDP before 3.29.0 Denial of Service via smartcard cacheEPSS 0.3%CVE-2026-91952HIGHFreeRDP before 3.31.0 Denial of Service via pool_decode_rectEPSS 0.3%CVE-2026-91956HIGHFreeRDP before 3.31.0 Out-of-Bounds Read via URBDRCEPSS 0.3%CVE-2026-27951MEDIUMFreeRDP has possible Integer overflow in Stream_EnsureCapacityEPSS 0.3%CVE-2026-91961HIGHFreeRDP before 3.31.0 Denial of Service via URBDRCEPSS 0.3%CVE-2026-91951HIGHFreeRDP 3.14.0 through 3.30.0 Out-of-bounds Write via urbdrcEPSS 0.3%CVE-2026-91959HIGHFreeRDP before 3.31.0 Buffer Over-read via RTS GatewayEPSS 0.3%CVE-2026-91954HIGHFreeRDP before 3.31.0 NULL Pointer Dereference via NSCodecEPSS 0.3%CVE-2026-67299HIGHFreeRDP before 3.29.0 Use-After-Free via WindowIcon async messageEPSS 0.3%CVE-2026-63652HIGHFreeRDP: Double-free of `client_formats` in the rdpsnd server channel on a malformed Client Audio Formats PDUEPSS 0.3%CVE-2026-55827HIGHFreeRDP: Heap out-of-bounds write in RemoteFX (RFX) Cache Bitmap V3 decodeEPSS 0.3%CVE-2026-55564MEDIUMFreeRDP: Out-of-bounds read in glyph_cache_get via crafted glyph fragmentsEPSS 0.3%CVE-2026-67292CRITICALFreeRDP before 3.29.0 WebSocket Ping Buffer Over-disclosureEPSS 0.3%CVE-2026-91957LOWFreeRDP before 3.31.0 Use-After-Free via smartcard workerEPSS 0.3%CVE-2026-67300HIGHFreeRDP before 3.29.0 Use-After-Free via async message proxyEPSS 0.3%CVE-2026-29774MEDIUMFreeRDP has a heap-buffer-overflow in avc420_yuv_to_rgb via OOB regionRectsEPSS 0.3%CVE-2026-22856MEDIUMFreeRDP has a heap-use-after-free in create_irp_threadEPSS 0.3%CVE-2026-31883MEDIUMFreeRDP has a `size_t` underflow in ADPCM decoder leads to heap-buffer-overflow writeEPSS 0.3%CVE-2026-85090MEDIUMFreeRDP before 3.31.0 Heap Out-of-Bounds Read via AVC444EPSS 0.3%CVE-2026-29775MEDIUMFreeRDP has a heap-buffer-overflow in bitmap_cache_put via OOB cacheIdEPSS 0.3%