Official source evidencegithub.comVersioned article
Official source article · github.com

Release 3.27.0 · FreeRDP/FreeRDP · GitHub

BlackTree keeps a versioned source snapshot and links it to relevant CVE reports. The publisher remains authoritative for product applicability, release details and installation guidance.

Read the official article ↗
Publishergithub.com
Article IDNo stable ID in source URL
Verified snapshot27 Sept 2026, 14:00 UTC
Linked CVEs6

Linked CVE reports

These are source relationships, not a claim that this article fixes every affected product or branch.

  • CVE-2026-55193FreeRDP: Heap-buffer-overflow write in TS Gateway RPC fragment receive due to uncapped bind_ack max_xmit_frag
  • CVE-2026-55194FreeRDPHeap-buffer-overflow write in TS Gateway RPC RESPONSE reassembly due to alloc_hint capacity mismatch
  • CVE-2026-55192FreeRDP: Out-of-bounds read in H.264 YUV-to-RGB conversion due to decoder/surface dimension mismatch
  • CVE-2026-55564FreeRDP: Out-of-bounds read in glyph_cache_get via crafted glyph fragments
  • CVE-2026-55648FreeRDP: Integer Overflow in `freerdp_image_copy_from_icon_data` Bypasses Bounds Check
  • CVE-2026-55191FreeRDP: Heap-buffer-overflow write in AVC444 YUV buffer allocation

Source and provenance

Original title: Release 3.27.0 · FreeRDP/FreeRDP · GitHub. Captured 27 Sept 2026, 14:00 UTC. The stored article is used for enrichment and change detection; BlackTree does not republish the publisher's full text here.

Open the publisher's current version ↗