What is CVE-2026-67305?
This CVE describes a heap buffer overflow vulnerability in the FreeRDP Windows client prior to version 3.29.0, triggered via the clipboard virtual channel when processing a CLIPRDR_FILE_CONTENTS_RESPONSE PDU without proper size validation. A malicious RDP server could exploit this to achieve remote code execution on affected clients. Users should upgrade to FreeRDP version 3.29.0 or later.
Azərbaycanca: Bu CVE, FreeRDP Windows müştərisinin 3.29.0-dan əvvəlki versiyalarında, clipboard virtual kanalında server tərəfindən göndərilən məlumat ölçüsünün yoxlanılmaması nəticəsində yaranan heap buffer overflow zəifliyidir. Təsirə məruz qalan istifadəçilər zərərli RDP serverinə qoşulduqda, uzaqdan kod icrası riski ilə üzləşə bilərlər. Müdafiə üçün FreeRDP müştərisini ən azı 3.29.0 versiyasına yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-122; shared vendor: FreeRDP
FAQ1
How do I know if I am vulnerable to CVE-2026-67305?
You are vulnerable if you are using a FreeRDP Windows client version prior to 3.29.0. The risk arises when connecting to a malicious RDP server via the clipboard virtual channel.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.