FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, pixel data from adjacent heap memory is rendered to screen, potentially leaking sensitive data to the attacker. This issue has been patched in version 3.24.2.
References
| Link | Resource |
|---|---|
| https://github.com/FreeRDP/FreeRDP/commit/c49d1ad43b8c7b32794d0250f2623c2dccd7ef25 | Patch |
| https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-x6gr-8p7h-5h85 | Patch Vendor Advisory |
Configurations
History
No history.
Information
Published : 2026-03-30 22:16
Updated : 2026-06-17 10:38
NVD link : CVE-2026-33985
Mitre link : CVE-2026-33985
CVE.ORG link : CVE-2026-33985
JSON object : View
Products Affected
freerdp
- freerdp
