What is CVE-2026-68579?
A heap-based buffer overflow vulnerability exists in FreeRDP's Windows clipboard client (wf_cliprdr.c) due to improper handling of IStream::Read calls with fixed-size buffers. Versions prior to 3.30.0 are affected, potentially allowing remote code execution. Users should immediately upgrade to version 3.30.0 or later.
Azərbaycanca: FreeRDP-nin Windows clipboard client-ində (wf_cliprdr.c) heap-based buffer overflow zəifliyi aşkarlanıb. 3.30.0 versiyasından əvvəlki versiyalar təsirlənir və uzaqdan kod icrasına səbəb ola bilər. Təcili olaraq 3.30.0 və ya daha yeni versiyaya yeniləmə tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-122; shared vendor: FreeRDP
FAQ2
In which FreeRDP component was CVE-2026-68579 discovered?
This vulnerability was discovered in FreeRDP's Windows clipboard client (wf_cliprdr.c).
What action should be taken to mitigate CVE-2026-68579?
Users should immediately upgrade FreeRDP to version 3.30.0 or later.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.