24h | 7d | 30d

Overview

  • FreeRDP
  • FreeRDP

14 Jan 2026
Published
14 Jan 2026
Updated

CVSS v4.0
MEDIUM (6.8)
EPSS
0.04%

KEV

Description

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.20.1, a heap use-after-free occurs in irp_thread_func because the IRP is freed by irp->Complete() and then accessed again on the error path. This vulnerability is fixed in 3.20.1.

Statistics

  • 1 Post
  • 1 Interaction

Last activity: 20 hours ago

Overview

  • FreeRDP
  • FreeRDP

14 Jan 2026
Published
14 Jan 2026
Updated

CVSS v4.0
MEDIUM (6.8)
EPSS
0.04%

KEV

Description

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.20.1, a race in the serial channel IRP thread tracking allows a heap use‑after‑free when one thread removes an entry from serial->IrpThreads while another reads it. This vulnerability is fixed in 3.20.1.

Statistics

  • 1 Post
  • 1 Interaction

Last activity: 20 hours ago

Overview

  • FreeRDP
  • FreeRDP

14 Jan 2026
Published
14 Jan 2026
Updated

CVSS v4.0
MEDIUM (5.6)
EPSS
0.04%

KEV

Description

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.20.1, the URBDRC client does not perform bounds checking on server‑supplied MSUSB_INTERFACE_DESCRIPTOR values and uses them as indices in libusb_udev_complete_msconfig_setup, causing an out‑of‑bounds read. This vulnerability is fixed in 3.20.1.

Statistics

  • 1 Post
  • 1 Interaction

Last activity: 20 hours ago

Overview

  • FreeRDP
  • FreeRDP

14 Jan 2026
Published
14 Jan 2026
Updated

CVSS v4.0
MEDIUM (6.9)
EPSS
0.04%

KEV

Description

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.20.1, a race condition between the RDPGFX dynamic virtual channel thread and the SDL render thread leads to a heap use-after-free. Specifically, an escaped pointer to sdl->primary (SDL_Surface) is accessed after it has been freed during RDPGFX ResetGraphics handling. This vulnerability is fixed in 3.20.1.

Statistics

  • 1 Post
  • 1 Interaction

Last activity: 20 hours ago
Showing 71 to 74 of 74 CVEs