What is CVE-2026-66401?
FreeRDP versions before 3.29.0 contain an out-of-bounds heap read vulnerability in the UVC H.264 extension-unit parser due to improper validation of descriptor length before accessing the GUID field. A local attacker with a malicious USB video camera can trigger a heap read beyond allocated bounds. Upgrade to FreeRDP 3.29.0 or later to mitigate this issue.
Azərbaycanca: FreeRDP 3.29.0-dən əvvəlki versiyalarda UVC H.264 extension-unit parser-da descriptor uzunluğunun düzgün yoxlanılmaması səbəbindən out-of-bounds heap read zəifliyi mövcuddur. Zərərli USB video kamera vasitəsilə lokal hücumçu heap yaddaşını oxuya bilər. FreeRDP-ni 3.29.0 və ya daha yeni versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-125; shared vendor: FreeRDP
FAQ2
In which FreeRDP component was CVE-2026-66401 identified?
It was identified in the UVC H.264 extension-unit parser due to improper validation of descriptor length.
To which version should users upgrade to protect against CVE-2026-66401?
Users should upgrade to FreeRDP 3.29.0 or a later version.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.