Opened 7 months ago
Closed 7 months ago
#22976 closed enhancement (fixed)
FreeRDP-3.24.0 (Security update)
| Reported by: | Bruce Dubbs | Owned by: | zeckma |
|---|---|---|---|
| Priority: | high | Milestone: | 13.1 |
| Component: | BOOK | Version: | git |
| Severity: | critical | Keywords: | |
| Cc: |
Description
New minor version.
Change History (8)
comment:1 by , 7 months ago
| Owner: | changed from to |
|---|---|
| Status: | new → assigned |
comment:2 by , 7 months ago
| Priority: | normal → elevated |
|---|---|
| Summary: | FreeRDP-3.24.0 → FreeRDP-3.24.0 (Security update) |
comment:4 by , 7 months ago
| Owner: | changed from to |
|---|---|
| Status: | assigned → new |
comment:5 by , 7 months ago
| Status: | new → assigned |
|---|
comment:6 by , 7 months ago
| Priority: | elevated → high |
|---|---|
| Severity: | normal → critical |
comment:7 by , 7 months ago
Security fixes (Critical)
- CVE-2026-29774 (High): Heap buffer overflow
- CVE-2026-29775 (High): Heap out-of-bounds read and write
- CVE-2026-29776 (Low): Integer underflow
- CVE-2026-31806 (Critical): Heap buffer overflow (allows heap memory overwrite)
- CVE-2026-31883 (Critical): Integer underflow leads to Heap buffer overflow (long while loop time)
- CVE-2026-31884 (High): Division by zero (denial of service)
- CVE-2026-31885 (Critical): Out of bounds read
- CVE-2026-31897 (Critical): Out of bounds read
Note:
See TracTickets
for help on using tickets.

# 2026-03-13 Version 3.24.0
A new release with bugfixes and many improvements for users and developers alike.
## Security Advisories
# What's Changed