PT-2026-7125 · Freerdp+3 · Freerdp+3

Keryer

·

Published

2026-01-01

·

Updated

2026-04-07

·

CVE-2026-23948

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions FreeRDP versions prior to 3.22.0
Description FreeRDP, a free implementation of the Remote Desktop Protocol, contains a flaw. A NULL pointer dereference exists in the rdp write logon info v2() function. A malicious RDP server can exploit this by sending a specially crafted LogonInfoV2 Protocol Data Unit (PDU) where cbDomain or cbUserName is set to 0, potentially causing a FreeRDP proxy to crash.
Recommendations Update to version 3.22.0 or later.

Exploit

Fix

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

ALSA-2026:6340
ALSA-2026:6799
ALSA-2026:6918
CVE-2026-23948
GHSA-6F3C-QVQQ-2PX5
MGASA-2026-0046
OPENSUSE-SU-2026:10132-1
OPENSUSE-SU-2026:20339-1
RHSA-2026:10076
RHSA-2026:10734
RHSA-2026:10735
RHSA-2026:10951
RHSA-2026:11323
RHSA-2026:6340
RHSA-2026:6727
RHSA-2026:6743
RHSA-2026:6799
RHSA-2026:6918
RHSA-2026:6958
RHSA-2026:9640
RHSA-2026:9641
USN-8042-1

Affected Products

Freerdp
Linuxmint
Rocky Linux
Ubuntu