logo

CVE-2026-68579: FreeRDP Heap Buffer Overflow in Windows Clipboard Client

ID: f7ed9520-1927-5aed-9b2c-837725907de7

STIX ID: report--f7ed9520-1927-5aed-9b2c-837725907de7

Feed Name: CosmicBytez Labs

Threat Score
75/100

Date Published: 2026-08-03

Date Updated: 2026-08-03

...
...

## Executive Summary A critical heap-based buffer overflow (CVE-2026-68579, CVSS 9.6) was found in FreeRDP's Windows clipboard client (CliprdrStream_Read) allowing oversized reads that can overwrite heap memory when a victim pastes clipboard content from a malicious RDP server; all FreeRDP versions up to 3.29.0 are affected and the issue is fixed in 3.30.0. Mitigation includes upgrading to FreeRDP 3.30.0 or disabling clipboard redirection until patched.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.