VYPR
Medium severity5.9NVD Advisory· Published Mar 30, 2026· Updated Apr 1, 2026

CVE-2026-33985

CVE-2026-33985

Description

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, pixel data from adjacent heap memory is rendered to screen, potentially leaking sensitive data to the attacker. This issue has been patched in version 3.24.2.

Affected products

1
  • cpe:2.3:a:freerdp:freerdp:*:*:*:*:*:*:*:*
    Range: <3.24.2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.