SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-67296

HIGH · CVSS 7.5 EPSS 0.34% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-01 · Last synced 2026-08-31

CyberRota Analysis

AI-Generated

FreeRDP versions prior to 3.29.0 are vulnerable to a denial of service attack due to improper validation of maximum PDU body length in the RDPEI server channel handler. An attacker can exploit this flaw by sending a specially crafted header-only RDPEI message, leading to excessive memory allocation on the server and potential service disruption. Organizations using FreeRDP should prioritize patching to mitigate this high-severity vulnerability.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-67296
Severity
HIGH
CVSS
7.5
EPSS
0.34%

Original NVD Description

FreeRDP before 3.29.0 contains a denial of service vulnerability in the RDPEI server channel handler that fails to validate maximum PDU body length before stream allocation. A malicious RDP client can send a header-only RDPEI message with a large declared body length to force excessive memory allocation on the server.