CVE-2026-44420

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.26.0, a malicious RDP client can trigger a heap-buffer-overflow write in FreeRDP's server-side clipboard (cliprdr) channel by sending a CB_CLIP_CAPS PDU with a too-small capabilitySetLength. This can crash the server process (remote DoS) and may be exploitable for code execution because it corrupts heap memory. This vulnerability is fixed in 3.26.0.
Configurations

Configuration 1 (hide)

cpe:2.3:a:freerdp:freerdp:*:*:*:*:*:*:*:*

History

27 Jul 2026, 13:18

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2026:46393 -

22 Jul 2026, 06:10

Type Values Removed Values Added
Summary
  • (es) FreeRDP es una implementación gratuita del Protocolo de Escritorio Remoto. Antes de la 3.26.0, un cliente RDP malicioso puede desencadenar una escritura de desbordamiento de búfer de pila en el canal del portapapeles (cliprdr) del lado del servidor de FreeRDP al enviar una PDU CB_CLIP_CAPS con un capabilitySetLength demasiado pequeño. Esto puede bloquear el proceso del servidor (DoS remoto) y puede ser explotable para la ejecución de código porque corrompe la memoria de pila. Esta vulnerabilidad está corregida en la 3.26.0.

08 Jul 2026, 13:16

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2026:36203 -

30 Jun 2026, 03:19

Type Values Removed Values Added
References
  • () https://access.redhat.com/security/cve/CVE-2026-44420 -
  • () https://bugzilla.redhat.com/show_bug.cgi?id=2483480 -
  • () https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-44420.json -
CWE CWE-131

02 Jun 2026, 03:16

Type Values Removed Values Added
References
  • () https://github.com/yhirose/cpp-httplib/security/advisories/GHSA-h6wq-j5mv-f3q8 -
References () https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-mvpx-xj7r-3p3r - Exploit, Vendor Advisory, Mitigation () https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-mvpx-xj7r-3p3r - Exploit, Mitigation, Vendor Advisory

01 Jun 2026, 17:37

Type Values Removed Values Added
References () https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-mvpx-xj7r-3p3r - () https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-mvpx-xj7r-3p3r - Exploit, Vendor Advisory, Mitigation
CPE cpe:2.3:a:freerdp:freerdp:*:*:*:*:*:*:*:*
First Time Freerdp freerdp
Freerdp

29 May 2026, 20:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-29 20:16

Updated : 2026-07-27 13:18


NVD link : CVE-2026-44420

Mitre link : CVE-2026-44420

CVE.ORG link : CVE-2026-44420


JSON object : View

Products Affected

freerdp

  • freerdp
CWE
CWE-122

Heap-based Buffer Overflow

CWE-131

Incorrect Calculation of Buffer Size