Improper Certificate Validation in FreeRDP - #VU152399

 

Improper Certificate Validation in FreeRDP - #VU152399

Published: September 28, 2026


Vulnerability identifier: #VU152399
CSH Severity: Medium
CVSS v4: 9.1 [CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N]
CVE-ID: N/A
CWE-ID: CWE-295
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to disclose OAuth authorization codes and control authentication exchanges.

The vulnerability exists due to improper certificate validation in freerdp_http_request() in libfreerdp/utils/http.c when handling Azure AD or Azure Virtual Desktop authentication requests. A remote attacker can intercept and modify HTTPS authentication traffic to disclose OAuth authorization codes and control authentication exchanges.

Only clients using the Azure AD or Azure Virtual Desktop authentication path in builds with WITH_AAD enabled are affected.


Affected software

FreeRDP

Remediation

Install security update from vendor's website.

FreeRDP - update to 3.32.0

External References

Related Security Bulletins