freerdp2, freerdp3 vulnerabilities (CVE-2026-23948)
Multiple vulnerabilities were identified in FreeRDP versions used in various Ubuntu releases, including memory handling errors, buffer overflows, and use-after-free conditions. These issues could allow attackers to cause denial of service or potentially execute arbitrary code. The vulnerabilities affect FreeRDP2 and FreeRDP3 packages across Ubuntu 18.04 LTS, 20.04 LTS, 22.04 LTS, 24.04 LTS, and 25.10. Official patches are available from Ubuntu, including updates distributed via Ubuntu Pro and Extended Security Maintenance (ESM).
AI Analysis
Technical Summary
Several security flaws were discovered in FreeRDP, including incorrect memory handling leading to NULL pointer dereference (CVE-2026-23948), improper size validation causing buffer overflows (CVE-2026-24491, CVE-2026-24675, CVE-2026-24679, CVE-2026-24682, CVE-2026-24677), and use-after-free vulnerabilities (CVE-2026-24676, CVE-2026-24681, CVE-2026-24678, CVE-2026-24680, CVE-2026-24683, CVE-2026-24684). These vulnerabilities affect FreeRDP2 and FreeRDP3 packages on multiple Ubuntu LTS and interim releases, with some issues specific to Ubuntu 24.04 LTS and 25.10. The flaws could be exploited to cause denial of service or execute arbitrary code. Ubuntu has released security updates and patches for affected versions, including through Ubuntu Pro and ESM channels.
Potential Impact
The vulnerabilities can be exploited to cause denial of service conditions or potentially allow arbitrary code execution on affected systems running vulnerable FreeRDP versions. This could lead to system instability or compromise if exploited. The impact varies by vulnerability but includes memory corruption and buffer overflow issues that attackers might leverage.
Mitigation Recommendations
Official patches are available and should be applied promptly. Ubuntu has released updated package versions fixing these vulnerabilities for all affected releases, including Ubuntu 18.04 LTS, 20.04 LTS, 22.04 LTS, 24.04 LTS, and 25.10. Users should update FreeRDP packages via standard system updates or through Ubuntu Pro and ESM services where applicable. No additional mitigation steps are indicated beyond applying these updates.
freerdp2, freerdp3 vulnerabilities (CVE-2026-23948)
Description
Multiple vulnerabilities were identified in FreeRDP versions used in various Ubuntu releases, including memory handling errors, buffer overflows, and use-after-free conditions. These issues could allow attackers to cause denial of service or potentially execute arbitrary code. The vulnerabilities affect FreeRDP2 and FreeRDP3 packages across Ubuntu 18.04 LTS, 20.04 LTS, 22.04 LTS, 24.04 LTS, and 25.10. Official patches are available from Ubuntu, including updates distributed via Ubuntu Pro and Extended Security Maintenance (ESM).
Affected software
pkg:deb/ubuntu/freerdp2?arch=source&distro=esm-infra/bionicpkg:deb/ubuntu/freerdp2?arch=source&distro=esm-infra/focalpkg:deb/ubuntu/freerdp2?arch=source&distro=jammypkg:deb/ubuntu/freerdp3?arch=source&distro=noblepkg:deb/ubuntu/freerdp2?arch=source&distro=esm-apps/noblepkg:deb/ubuntu/freerdp3?arch=source&distro=questingRun on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
Several security flaws were discovered in FreeRDP, including incorrect memory handling leading to NULL pointer dereference (CVE-2026-23948), improper size validation causing buffer overflows (CVE-2026-24491, CVE-2026-24675, CVE-2026-24679, CVE-2026-24682, CVE-2026-24677), and use-after-free vulnerabilities (CVE-2026-24676, CVE-2026-24681, CVE-2026-24678, CVE-2026-24680, CVE-2026-24683, CVE-2026-24684). These vulnerabilities affect FreeRDP2 and FreeRDP3 packages on multiple Ubuntu LTS and interim releases, with some issues specific to Ubuntu 24.04 LTS and 25.10. The flaws could be exploited to cause denial of service or execute arbitrary code. Ubuntu has released security updates and patches for affected versions, including through Ubuntu Pro and ESM channels.
Potential Impact
The vulnerabilities can be exploited to cause denial of service conditions or potentially allow arbitrary code execution on affected systems running vulnerable FreeRDP versions. This could lead to system instability or compromise if exploited. The impact varies by vulnerability but includes memory corruption and buffer overflow issues that attackers might leverage.
Mitigation Recommendations
Official patches are available and should be applied promptly. Ubuntu has released updated package versions fixing these vulnerabilities for all affected releases, including Ubuntu 18.04 LTS, 20.04 LTS, 22.04 LTS, 24.04 LTS, and 25.10. Users should update FreeRDP packages via standard system updates or through Ubuntu Pro and ESM services where applicable. No additional mitigation steps are indicated beyond applying these updates.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- USN-8042-1
- Osv Schema Version
- 1.7.0
- Ecosystems
- ["Ubuntu:Pro:18.04:LTS","Ubuntu:Pro:20.04:LTS","Ubuntu:22.04:LTS","Ubuntu:24.04:LTS","Ubuntu:Pro:24.04:LTS","Ubuntu:25.10"]
Patch Information
Threat ID: 6aa2af82acd9273b4925b3a7
Added to database: 09/10/2026, 13:24:18 UTC
Last enriched: 09/10/2026, 13:36:16 UTC
Last updated: 09/10/2026, 19:36:53 UTC
Views: 5
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.