HIGH 8.2 NVD
CVE-2026-91955
FreeRDP before 3.31.0 fails to validate client-supplied DesktopWidth and DesktopHeight values during GCC negotiation, allowing remote attackers to crash the ser
FreeRDP before 3.31.0 fails to validate client-supplied DesktopWidth and DesktopHeight values during GCC negotiation, allowing remote attackers to crash the server. Attackers can send crafted RDP packets with zero or oversized dimensions to trigger division-by-zero or assertion failures in multifragment update capability calculations, terminating the server process.
References
- https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-4464-r7qj-pgrx
- https://www.vulncheck.com/advisories/freerdp-before-3.31.0-denial-of-service-via-desktop-d
- https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-4464-r7qj-pgrx
This high severity vulnerability with a CVSS score of 8.2 was published on 2026-09-15 via NVD.
vulnfeed aggregates 13549 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.