CVE-2026-24677: FreeRDP has a heap-buffer-overflow in ecam_encoder_compress_h264
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.22.0, ecamencodercompressh264 trusts server-controlled dimensions and does not validate the source buffer size, leading to an out-of-bounds read in swsscale. This vulnerability is fixed in 3.22.0.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2026-24677?
CVE-2026-24677 is classified as a critical vulnerability due to the potential for remote code execution resulting from a heap-buffer overflow.
How do I fix CVE-2026-24677?
To fix CVE-2026-24677, upgrade FreeRDP to version 3.22.0 or later, where the vulnerability is addressed.
What causes the CVE-2026-24677 vulnerability?
CVE-2026-24677 is caused by the ecam_encoder_compress_h264 function not validating server-controlled dimensions, leading to an out-of-bounds read.
Which versions of FreeRDP are affected by CVE-2026-24677?
FreeRDP versions prior to 3.22.0 are affected by CVE-2026-24677.
What are the potential impacts of CVE-2026-24677 on systems using FreeRDP?
The potential impacts of CVE-2026-24677 include remote code execution and system compromise if exploited.