Remote Desktop Client Vulnerability in FreeRDP
CVE-2024-32660
What is CVE-2024-32660?
FreeRDP, a widely-used implementation of the Remote Desktop Protocol, has a significant vulnerability that allows an attacker to crash the FreeRDP client. This can occur when a malicious server sends an invalid allocation size request that exceeds the expected limits. The problematic versions of FreeRDP are those released prior to 3.5.1, which has since addressed this issue through a patch. Users relying on FreeRDP should upgrade to version 3.5.1 or later to mitigate this security risk, as there are currently no known workarounds available.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
FreeRDP < 3.5.1
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
