VDB

DEBIAN-CVE-2026-22853

DEBIAN-CVE-2026-22853 PUBLISHED CVSS 9.800000190734863 CRITICAL

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.20.1, RDPEAR’s NDR array reader does not perform bounds checking on the on‑wire element count and can write past the heap buffer allocated from hints, causing a heap buffer overflow in ndr_read_uint8Array. This vulnerability is fixed in 3.20.1.

Risk Scores

CVSS v3.1
9.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersions
Debian:11freerdp22.8.1+dfsg1, 2.11.7+dfsg1, 2.11.7+dfsg1
Debian:12freerdp2*, 0, 2.10.0+dfsg1-1.1
Debian:14freerdp33.17.1+dfsg, 3.16.0+dfsg-1, 3.16.0+dfsg-2
Debian:13freerdp30, 3.17.0+dfsg-1, 3.17.1+dfsg-1

Timeline

  • Jan 14, 2026 CVE Published
  • May 16, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›