FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.24.0, there is an out-of-bounds read in freerdp_bitmap_decompress_planar when SrcSize is 0. The function dereferences *srcp (which points to pSrcData) without first verifying that SrcSize >= 1. When SrcSize is 0 and pSrcData is non-NULL, this reads one byte past the end of the source buffer. This vulnerability is fixed in 3.24.0.
CVSS Details
- CVSS 3.1 Base Score: 0
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade freerdp | Mar 16, 2026 | Mar 13, 2026 |
| Amazon Linux Ami 2 | — | Upgrade libwinpr-develUpgrade freerdpUpgrade libwinprUpgrade freerdp-libsUpgrade freerdp-develUpgrade freerdp-debuginfo | May 20, 2026 | May 20, 2026 |
| Amazon_linux_2023 | — | Upgrade freerdp-libs-debuginfoUpgrade freerdp-develUpgrade freerdp-libsUpgrade freerdp-debugsourceUpgrade freerdp-debuginfoUpgrade libwinpr-debuginfoUpgrade libwinprUpgrade freerdp-server-debuginfoUpgrade freerdpUpgrade freerdp-serverUpgrade libwinpr-devel | Apr 7, 2026 | Mar 13, 2026 |
| Debian | — | Upgrade freerdp3 | Jul 23, 2026 | Jul 23, 2026 |
| Redhat_linux | — | No solution exists | Jul 17, 2026 | Mar 13, 2026 |
| Ubuntu | — | Upgrade freerdp-x11Upgrade freerdp3-x11Upgrade libfreerdp3-3 | Jul 21, 2026 | Jul 20, 2026 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub