THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-67306 (MEDIUM 5.4) — FreeRDP versions 3.28.0 and earlier contain an out-of-bounds read vulnerability in the RDP6 planar RLE bitmap decoder functions planar_decompress_plane_rle and planar_decompress_plane_rle_only in libfreerdp/codec/planar.c. Only the 1-byte control byte is bounds-checked; the subse

[NVD] CVE-2026-67306 (MEDIUM 5.4) — FreeRDP versions 3.28.0 and earlier contain an out-of-bounds read vulnerability in the RDP6 planar RLE bitmap decoder functions planar_decompress_plane_rle and planar_decompress_plane_rle_only in libfreerdp/codec/planar.c. Only the 1-byte control byte is bounds-checked; the subse

mednvdPublished 2026-08-01

CVE-2026-67306 CVSS: 5.4 MEDIUM Published: 2026-08-01T13:17:00.250

FreeRDP versions 3.28.0 and earlier contain an out-of-bounds read vulnerability in the RDP6 planar RLE bitmap decoder functions planar_decompress_plane_rle and planar_decompress_plane_rle_only in libfreerdp/codec/planar.c. Only the 1-byte control byte is bounds-checked; the subsequent 0–15 attacker-declared raw bytes are read with

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-67306