SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-67290

HIGH · CVSS 7.5 EPSS 0.43% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-01 · Last synced 2026-08-31

CyberRota Analysis

AI-Generated

FreeRDP versions prior to 3.29.0 are vulnerable to a heap out-of-bounds read in the TSMF FFmpeg decoder, which can be exploited by attackers sending malformed AVC1 MPEG2VIDEOINFO media types. This vulnerability can lead to application crashes due to improper validation of buffer lengths, posing a significant risk to systems using affected versions. Organizations utilizing FreeRDP should prioritize patching to mitigate potential exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-67290
Severity
HIGH
CVSS
7.5
EPSS
0.43%

Original NVD Description

FreeRDP before 3.29.0 contains a heap out-of-bounds read vulnerability in the TSMF FFmpeg decoder when parsing AVC1 MPEG2VIDEOINFO media types with insufficient ExtraData. Attackers can send malformed media format data from a server to trigger a crash by reading fixed offsets without validating source buffer length.