CVE-2026-68579: FreeRDP Heap Buffer Overflow in Windows Clipboard Client
ID: f7ed9520-1927-5aed-9b2c-837725907de7
STIX ID: report--f7ed9520-1927-5aed-9b2c-837725907de7
Feed Name: CosmicBytez Labs
Threat Score
## Executive Summary A critical heap-based buffer overflow (CVE-2026-68579, CVSS 9.6) was found in FreeRDP's Windows clipboard client (CliprdrStream_Read) allowing oversized reads that can overwrite heap memory when a victim pastes clipboard content from a malicious RDP server; all FreeRDP versions up to 3.29.0 are affected and the issue is fixed in 3.30.0. Mitigation includes upgrading to FreeRDP 3.30.0 or disabling clipboard redirection until patched.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
