PT-2026-67270 · Freerdp · Freerdp
CVSS v4.0
8.7
High
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
FreeRDP versions prior to 3.29.0
Description
A heap out-of-bounds read occurs in the TSMF FFmpeg decoder when parsing AVC1 MPEG2VIDEOINFO media types that have insufficient
ExtraData. A remote attacker can trigger a crash by sending malformed media format data from a server, which causes the system to read fixed offsets without validating the source buffer length.Recommendations
Update to version 3.29.0 or later.
Exploit
Fix
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Freerdp