CVE-2026-66401
FreeRDP before 3.29.0 Out-of-Bounds Read via UVC H.264
CVSS Score
2.1
EPSS Score
0.0%
EPSS Percentile
0th
FreeRDP before 3.29.0 contains an out-of-bounds heap read vulnerability in the UVC H.264 extension-unit parser that fails to validate descriptor length before accessing the GUID field. A local attacker with a malicious USB video camera can trigger a heap read beyond allocated bounds during camera stream setup, causing denial of service.
| CWE | CWE-125 |
| Vendor | freerdp |
| Product | freerdp |
| Published | Aug 1, 2026 |
Stay Ahead of the Next One
Get instant alerts for freerdp freerdp
Be the first to know when new low vulnerabilities affecting freerdp freerdp are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:P/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L Attack Vector
Physical
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
Low
Affected Versions
FreeRDP / FreeRDP
0 < 3.29.0
References
Credits
๐ acorn421