Name
CVE-2026-33952
Description
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, an unvalidated auth_length field read from the network triggers a WINPR_ASSERT() failure in rts_read_auth_verifier_no_checks(), causing any FreeRDP client connecting through a malicious RDP Gateway to crash with SIGABRT. This is a pre-authentication denial of service affecting all FreeRDP clients using RPC-over-HTTP gateway transport. The assertion is active in default release builds (WITH_VERBOSE_WINPR_ASSERT=ON). This issue has been patched in version 3.24.2.
CWEs
Published Date
Updated Date
Workaround
-
Analysis#
Vulnerability Ratings#
6
CVSSv4
6.5
CVSSv31
6.5
CVSSv31
NaN
other
Others affected components#
Resolved with patches#
freerdp3 (yocto:scarthgap)
#
Title
Author
Resolve
1
[core,gateway] Check rpcconn_common_hdr_t::auth_length is
Armin Novak <armin.novak@thincast.com>
CVE-2026-33952