CVE 6.8 MEDIUM

FreeRDP has a heap-buffer-overflow in ndr_read_uint8Array_CVE-2026-22853

6.8 / 10
MEDIUM
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P

Description

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.20.1, RDPEAR’s NDR array reader does not perform bounds checking on the on‑wire element count and can write past the heap buffer allocated from hints, causing a heap buffer overflow in ndr_read_uint8Array. This vulnerability is fixed in 3.20.1.

Basic Information

ID CVE-2026-22853
Source GitHub_M
Published Jan 14, 2026 at 17:46

Affected Product

Vendor FreeRDP
Product FreeRDP
Version < 3.20.1
Affected Versions FreeRDP FreeRDP < 3.20.1

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.