Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-67305

Опубликовано: 01 авг. 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий

Описание

FreeRDP Windows client before 3.29.0 contains a heap buffer overflow vulnerability in the clipboard virtual channel when processing CLIPRDR_FILE_CONTENTS_RESPONSE PDUs without validating the server-provided size against the destination buffer. A malicious RDP server can send a response with a data payload significantly larger than requested, causing arbitrary heap memory corruption that may enable remote code execution when a user performs a paste operation.

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

not-affected

windows only
esm-infra-legacy/xenial

not-affected

windows only
jammy

DNE

noble

DNE

resolute

DNE

upstream

not-affected

windows only

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/noble

not-affected

windows only
esm-infra/bionic

not-affected

windows only
esm-infra/focal

not-affected

windows only
jammy

not-affected

windows only
noble

not-affected

windows only
resolute

DNE

upstream

not-affected

debian: Only affects the FreeRDP Windows client

Показывать по

РелизСтатусПримечание
devel

not-affected

windows only
jammy

DNE

noble

not-affected

windows only
resolute

not-affected

windows only
upstream

not-affected

debian: Only affects the FreeRDP Windows client

Показывать по

EPSS

Процентиль: 40%
0.0049
Низкий

Связанные уязвимости

CVSS3: 7.5
redhat
около 1 месяца назад

FreeRDP Windows client before 3.29.0 contains a heap buffer overflow vulnerability in the clipboard virtual channel when processing CLIPRDR_FILE_CONTENTS_RESPONSE PDUs without validating the server-provided size against the destination buffer. A malicious RDP server can send a response with a data payload significantly larger than requested, causing arbitrary heap memory corruption that may enable remote code execution when a user performs a paste operation.

nvd
около 1 месяца назад

FreeRDP Windows client before 3.29.0 contains a heap buffer overflow vulnerability in the clipboard virtual channel when processing CLIPRDR_FILE_CONTENTS_RESPONSE PDUs without validating the server-provided size against the destination buffer. A malicious RDP server can send a response with a data payload significantly larger than requested, causing arbitrary heap memory corruption that may enable remote code execution when a user performs a paste operation.

debian
около 1 месяца назад

FreeRDP Windows client before 3.29.0 contains a heap buffer overflow v ...

github
около 1 месяца назад

FreeRDP Windows client before 3.29.0 contains a heap buffer overflow vulnerability in the clipboard virtual channel when processing CLIPRDR_FILE_CONTENTS_RESPONSE PDUs without validating the server-provided size against the destination buffer. A malicious RDP server can send a response with a data payload significantly larger than requested, causing arbitrary heap memory corruption that may enable remote code execution when a user performs a paste operation.

EPSS

Процентиль: 40%
0.0049
Низкий