CVE-2026-57158

ubuntu freerdp3: Lesezugriff ausserhalb der Grenzen

criticalEPSS 0.7%

Affected

  • ubuntu/freerdp3 3.30.0+dfsg-0ubuntu0.24.04.1..*
  • ubuntu/freerdp3 3.30.0+dfsg-0ubuntu0.26.04.1..*

Description

FreeRDP is a free implementation of the Remote Desktop Protocol. From 3.21.0 before 3.28.0, FreeRDP clients using the GFX pipeline contain an incomplete fix for CVE-2026-23530 in planar_decompress_plane_rle_only in libfreerdp/codec/planar.c, allowing a malicious RDP server to send a truncated RDPGFX_CMDID_WIRETOSURFACE_1 planar payload that reads one byte past the input buffer. This issue is fixed in version 3.28.0.

Affected operating systems

  • linux

    ubuntu / freerdp3noble

  • linux

    ubuntu / freerdp3resolute

Metrics

9.1
Source: nvd-v3
51.4 %
High — this CVE ranks above the median of all CVEs scored today (rank ≥ 36%).
Show all metrics
Severity
critical
no public PoC known
0.7 %
Low — model estimates < 1% exploitation likelihood.
Published
2026-07-10 20:16 UTC
CWE-125

Weakness classes (CWE)

  • CWE-125Base

    Out-of-bounds Read

    The product reads data past the end, or before the beginning, of the intended buffer.

    cwe.mitre.org →

References & sources

Linked advisories