What is CVE-2026-67296?
FreeRDP before version 3.29.0 contains a denial of service vulnerability in the RDPEI server channel handler due to improper validation of maximum PDU body length before stream allocation. A malicious RDP client can send a header-only RDPEI message with a large declared body length, leading to excessive memory allocation and potential service disruption.
Azərbaycanca: FreeRDP-in 3.29.0-dən əvvəlki versiyalarında RDPEI server kanalında denial of service (DoS) zəifliyi aşkarlanıb. Təhlükəli RDP müştərisi həddən artıq böyük elan edilmiş PDU body uzunluğu göndərərək serverdə həddindən artıq yaddaş ayrılmasına səbəb ola bilər.
Related CVEs
link basis: same weakness class CWE-400; shared vendor: FreeRDP
FAQ2
In which component of FreeRDP does CVE-2026-67296 exist?
The vulnerability exists in the RDPEI server channel handler of FreeRDP.
What impact can exploiting CVE-2026-67296 have?
A malicious RDP client can cause excessive memory allocation on the server, leading to a denial of service (DoS) condition.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.