THREAT OPS › Threat News › [NVD] CVE-2026-45700 (CRITICAL 9.8) — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.26.0, FreeRDP's planar bitmap decoder has an out-of-bounds heap write when decoding RLE planar data. In libfreerdp/codec/planar.c, freerdp_bitmap_decompress_planar() validates the X destination coordinate
[NVD] CVE-2026-45700 (CRITICAL 9.8) — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.26.0, FreeRDP's planar bitmap decoder has an out-of-bounds heap write when decoding RLE planar data. In libfreerdp/codec/planar.c, freerdp_bitmap_decompress_planar() validates the X destination coordinate
CVE-2026-45700 CVSS: 9.8 CRITICAL Published: 2026-05-29T20:16:27.533
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.26.0, FreeRDP's planar bitmap decoder has an out-of-bounds heap write when decoding RLE planar data. In libfreerdp/codec/planar.c, freerdp_bitmap_decompress_planar() validates the X destination coordinate nXDst against the caller-provided destination str
MITRE ATT&CK techniques
- Remote Desktop ProtocolT1021.001
Indicators of compromise
- CVE-2026-45700cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-45700