What is CVE-2026-67292?
FreeRDP versions before 3.29.0 contain a buffer over-disclosure vulnerability in the gateway WebSocket transport, where the client's Pong reply reuses a fixed 1024-byte stream without limiting its length to the actual Ping payload. This could allow a malicious gateway to leak sensitive residual data from the response buffer. Users should immediately update to FreeRDP 3.29.0 or later.
Azərbaycanca: FreeRDP-nin 3.29.0-dan əvvəlki versiyalarında gateway WebSocket transport komponentində bufer həddindən artıq ifşa zəifliyi (buffer over-disclosure) mövcuddur. Bu, təhlükəli gateway vasitəsilə əvvəlki əməliyyatlardan qalmış məxfi məlumatların Pong cavabında sızdırılmasına səbəb ola bilər. İstifadəçilər dərhal FreeRDP-ni 3.29.0 və ya daha yeni versiyaya yeniləməlidir.
Related CVEs
link basis: same weakness class CWE-119
FAQ2
Which component of FreeRDP is affected by CVE-2026-67292?
The CVE-2026-67292 vulnerability affects the gateway WebSocket transport component of FreeRDP. The root cause is that the client's Pong reply reuses a fixed 1024-byte stream without limiting its length to the actual Ping payload.
What is the potential impact of CVE-2026-67292?
This vulnerability could allow a malicious gateway to leak sensitive residual data from the response buffer in the Pong reply, known as a buffer over-disclosure.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.