NULL pointer dereference in FreeRDP - #VU152393
Published: September 28, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to a null pointer dereference in the client video redirection channel when processing video redirection messages in an incorrect order. A remote attacker can send video redirection messages in an incorrect order to cause a denial of service.
User interaction is required.