AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-73242

HIGH · CVSS 8.3 EPSS 0.35% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

FreeRDP versions prior to 3.30.0 are vulnerable due to a flaw in the kerberos_DecryptMessage function, which improperly handles peer-controlled GSS Wrap-token EC fields, leading to potential out-of-bounds reads and in-place writes. This vulnerability could allow an attacker to exploit the CredSSP/NLA Kerberos decryption process, posing a significant risk to systems utilizing Remote Desktop Protocol. Organizations using FreeRDP should prioritize upgrading to version 3.30.0 or later to mitigate this high-severity risk.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-73242
Severity
HIGH
CVSS
8.3
EPSS
0.35%

Original NVD Description

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.30.0, FreeRDP's winpr/libwinpr/sspi/Kerberos/kerberos.c kerberos_DecryptMessage function fails to bound the peer-controlled GSS Wrap-token EC field before using it with RRC in IOV pointer offsets, allowing a malicious RDP peer to trigger out-of-bounds reads and in-place writes during CredSSP/NLA Kerberos decryption. This issue is fixed in version 3.30.0.