Vulnerability Description
FreeRDP before 3.29.0 contains integer overflow vulnerabilities in the audio input redirection channel (audin) across ALSA, sndio, WinMM, and OpenSL ES backends that fail to validate the FramesPerPacket parameter from RDP servers. Attackers can supply a malicious FramesPerPacket value causing allocation size wraparound, resulting in heap-based buffer overflow on ALSA or denial of service on all platforms.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-69xf-pqrw-596x
- https://www.vulncheck.com/advisories/freerdp-before-integer-overflow-via-audio-i
FAQ
What is CVE-2026-68580?
CVE-2026-68580 is a vulnerability with a CVSS score of 7.5 (HIGH). FreeRDP before 3.29.0 contains integer overflow vulnerabilities in the audio input redirection channel (audin) across ALSA, sndio, WinMM, and OpenSL ES backends that fail to validate the FramesPerPack...
How severe is CVE-2026-68580?
CVE-2026-68580 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-68580?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.