Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

FreeRDP — Vulnerabilities & Security Advisories 211

Browse all 211 CVE security advisories affecting FreeRDP. AI-powered Chinese analysis, POCs, and references for each vulnerability.

FreeRDP is an open-source Remote Desktop Protocol client and server implementation designed to facilitate cross-platform remote desktop connectivity. Its widespread adoption in enterprise and personal environments has made it a frequent target for security researchers, resulting in a significant number of recorded Common Vulnerabilities and Exposures. Historically, the codebase has been susceptible to critical remote code execution flaws, often stemming from improper input validation within the RDP protocol parsing logic. These vulnerabilities frequently allow attackers to execute arbitrary commands or escalate privileges on affected systems without user interaction. While the project maintains an active development cycle to patch these issues, the sheer volume of past incidents highlights the complexity of implementing secure network protocols. Continuous monitoring and timely updates remain essential for mitigating risks associated with its extensive feature set and legacy code dependencies.

Found 211 results / 211 Clear Filters
Top products by FreeRDP: FreeRDP
CVE ID Title CVSS Severity Published
CVE-2023-40187 Use-After-Free in FreeRDP — FreeRDP CWE-416 7.3 High 2023-08-31
CVE-2023-40186 IntegerOverflow leading to Out-Of-Bound Write Vulnerability in FreeRDP — FreeRDP CWE-787 6.5 Medium 2023-08-31
CVE-2023-40181 Integer-Underflow leading to Out-Of-Bound Read in FreeRDP — FreeRDP CWE-125 5.3 Medium 2023-08-31
CVE-2023-39356 Missing offset validation leading to Out-of-Bounds Read in FreeRDP — FreeRDP CWE-125 5.3 Medium 2023-08-31
CVE-2023-39352 Invalid offset validation leading to Out Of Bound Write in FreeRDP — FreeRDP CWE-787 5.3 Medium 2023-08-31
CVE-2023-39353 Missing offset validation leading to Out Of Bound Read in FreeRDP — FreeRDP CWE-125 5.3 Medium 2023-08-31
CVE-2023-39351 FreeRDP Null Pointer Dereference leading denial of service — FreeRDP CWE-476 5.3 Medium 2023-08-31
CVE-2023-39355 FreeRDP Use-After-Free in RDPGFX_CMDID_RESETGRAPHICS — FreeRDP CWE-416 7.0 High 2023-08-31
CVE-2023-39354 FreeRDP Out-Of-Bounds Read in nsc_rle_decompress_data — FreeRDP CWE-125 5.9 Medium 2023-08-31
CVE-2023-39350 Incorrect offset calculation leading to denial of service in FreeRDP — FreeRDP CWE-191 5.9 Medium 2023-08-31
CVE-2023-40589 FreeRDP Global-Buffer-Overflow in ncrush_decompress — FreeRDP CWE-120 4.3 Medium 2023-08-31
CVE-2022-39316 Out of bound read in FreeRDP — FreeRDP CWE-125 4.8 Medium 2022-11-16
CVE-2022-39317 Out of bounds read in zgfx decoder in FreeRDP — FreeRDP CWE-125 4.6 Medium 2022-11-16
CVE-2022-39318 Division by zero in urbdrc channel in FreeRDP — FreeRDP CWE-20 4.8 Medium 2022-11-16
CVE-2022-39319 Missing length validation in urbdrc channel in FreeRDP — FreeRDP CWE-125 4.6 Medium 2022-11-16
CVE-2022-39320 Heap buffer overflow in urbdrc channel — FreeRDP CWE-125 5.5 Medium 2022-11-16
CVE-2022-39347 Missing path sanitation with `drive` channel in FreeRDP — FreeRDP CWE-22 2.6 Low 2022-11-16
CVE-2022-41877 Missing input length validation in `drive` channel in FreeRDP — FreeRDP CWE-119 4.6 Medium 2022-11-16
CVE-2022-39282 RDP client: Read of uninitialized memory with parallel port redirection — FreeRDP CWE-908 3.5 Low 2022-10-12
CVE-2022-39283 FreeRDP may read and display out of bounds data — FreeRDP CWE-125 5.9 Medium 2022-10-12
CVE-2022-24882 Server side NTLM does not properly check parameters in FreeRDP — FreeRDP CWE-287 9.1 Critical 2022-04-26
CVE-2022-24883 FreeRDP Server authentication might allow invalid credentials to pass — FreeRDP CWE-287 7.4 High 2022-04-26
CVE-2021-41159 Improper client input validation for FreeRDP gateway connections allows to overwrite memory — FreeRDP CWE-787 5.8 Medium 2021-10-21
CVE-2021-41160 Improper region checks in FreeRDP allow out of bound write to memory — FreeRDP CWE-787 5.3 Medium 2021-10-21
CVE-2020-15103 Integer Overflow in FreeRDP — FreeRDP CWE-680 3.5 Low 2020-07-27
CVE-2020-11095 Global OOB read in update_recv_primary_order in FreeRDP — FreeRDP CWE-125 3.5 Low 2020-06-22
CVE-2020-11096 Global OOB read in update_read_cache_bitmap_v3_order in FreeRDP — FreeRDP CWE-125 3.5 Low 2020-06-22
CVE-2020-11097 OOB read in ntlm_av_pair_get in FreeRDP — FreeRDP CWE-125 3.5 Low 2020-06-22
CVE-2020-11098 Out-of-bound read in glyph_cache_put in FreeRDP — FreeRDP CWE-125 3.5 Low 2020-06-22
CVE-2020-11099 OOB Read in license_read_new_or_upgrade_license_packet in FreeRDP — FreeRDP CWE-125 3.5 Low 2020-06-22

This page lists every published CVE security advisory associated with FreeRDP. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.