Heap Buffer Overflow in FreeRDP Affects Versions Prior to 3.28.0
CVE-2026-64620
9.3CRITICAL
What is CVE-2026-64620?
FreeRDP versions before 3.28.0 contain a serious vulnerability due to a heap-based buffer overflow in the crypto_rsa_common function. This vulnerability occurs because the function writes data into the output buffer without proper bounds checking, allowing an unauthenticated attacker to control the overflow process. As a result, this can lead to a denial of service by manipulating the encrypted client random during RDP Standard Security, potentially causing significant impact on the system's stability.
Affected Version(s)
FreeRDP 0 < 3.28.0
FreeRDP 3.28.0
