THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-91959 (MEDIUM 6.5) — FreeRDP before 3.31.0 contains a buffer over-read vulnerability in the rts_read_result function within the RPC gateway transport parser. Attackers can send a malicious BIND_ACK PDU with a truncated result entry to trigger an out-of-bounds read causing process abort.

[NVD] CVE-2026-91959 (MEDIUM 6.5) — FreeRDP before 3.31.0 contains a buffer over-read vulnerability in the rts_read_result function within the RPC gateway transport parser. Attackers can send a malicious BIND_ACK PDU with a truncated result entry to trigger an out-of-bounds read causing process abort.

mednvdPublished 2026-09-15

CVE-2026-91959 CVSS: 6.5 MEDIUM Published: 2026-09-15T16:17:50.930

FreeRDP before 3.31.0 contains a buffer over-read vulnerability in the rts_read_result function within the RPC gateway transport parser. Attackers can send a malicious BIND_ACK PDU with a truncated result entry to trigger an out-of-bounds read causing process abort.

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-91959