Double free in FreeRDP - #VU136922

 

Double free in FreeRDP - #VU136922

Published: July 6, 2026


Vulnerability identifier: #VU136922
CSH Severity: Medium
CVSS v4: 6.7 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: N/A
CWE-ID: CWE-415
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to cause memory corruption.

The vulnerability exists due to double free in freerdp_client_rdp_file_apply_to_settings() when parsing a crafted selectedmonitors field in a .rdp file. A remote attacker can trick the victim into opening a crafted .rdp file to cause memory corruption.

User interaction is required to open the crafted connection file, and the issue is reachable in the default configuration of the FreeRDP CLI clients.


Affected software

FreeRDP

Remediation

Install security update from vendor's website.

FreeRDP - update to 3.28.0

External References

Related Security Bulletins