CVE-2026-25942

Severity CVSS v4.0:
MEDIUM
Type:
CWE-125 Out-of-bounds Read
Publication date:
25/02/2026
Last modified:
27/02/2026

Description

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, `xf_rail_server_execute_result` indexes the global `error_code_names[]` array (7 elements, indices 0–6) with an unchecked `execResult->execResult` value received from the server, allowing an out-of-bounds read when the server sends an `execResult` value of 7 or greater. Version 3.23.0 fixes the issue.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:freerdp:freerdp:*:*:*:*:*:*:*:* 3.23.0 (excluding)