CVE-2026-67296

説明

A flaw was found in FreeRDP. A remote attacker can exploit a vulnerability in the Remote Desktop Protocol (RDP) Enhanced Input (RDPEI) server channel handler. By sending a malicious RDPEI message with an oversized declared body length, the attacker can force the server to allocate excessive memory, leading to a denial of service (DoS).

詳細

A Moderate denial of service (DoS) vulnerability in FreeRDP's RDPEI server channel affects systems acting as an RDP server or proxy. A remote, unauthenticated attacker can send a specially crafted RDP message to trigger excessive memory allocation, causing service disruption.

軽減策

To mitigate this do not expose FreeRDP server/proxy/shadow (freerdp-shadow-cli / freerdp-proxy) to untrusted networks—allow only trusted clients via firewall, or disable those services if unused.

CVSS (Common Vulnerability Scoring System) のスコアの詳細

Info alert:Important note

CVSS scores for open source components depend on vendor-specific factors (e.g. version or build chain). Therefore, Red Hat's score and impact rating can be different from NVD and other vendors. Red Hat remains the authoritative CVE Naming Authority (CNA) source for its products and services (see Red Hat classifications).

CVSS v3 スコアの内訳

Red HatNVDcve.org
ベーススコア6.5N/A7.5
攻撃ベクトルNetworkN/ANetwork
攻撃の複雑さLowN/ALow
必要な権限LowN/ANone
ユーザー関与レベルNoneN/ANone
範囲UnchangedN/AUnchanged
機密性NoneN/ANone
完全性への影響NoneN/ANone
可用性への影響HighN/AHigh

ベクトル

Red Hat: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

cve.org: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

脆弱性の原因 (CWE) の理解

Availability

Technical Impact: DoS: Crash, Exit, or Restart; DoS: Resource Consumption (CPU); DoS: Resource Consumption (Memory)

An attacker could provide unexpected values and cause a program crash or arbitrary control of resource allocation, leading to excessive consumption of resources such as memory and CPU.

Confidentiality

Technical Impact: Read Memory; Read Files or Directories

An attacker could read confidential data if they are able to control resource references.

Integrity,Confidentiality,Availability

Technical Impact: Modify Memory; Execute Unauthorized Code or Commands

An attacker could use malicious input to modify data or possibly alter control flow in unexpected ways, including arbitrary command execution.

よくある質問

エラータ通知の受信を希望しますか? こちらで登録してください