CVE-2026-33983
published 2026-03-30CVE-2026-33983: FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, progressive_decompress_tile_upgrade() detects a mismatch via…
PriorityP433medium6.5CVSS 3.1
AVNACLPRNUIRSUCNINAH
EPSS
0.43%
34.5th percentile
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, progressive_decompress_tile_upgrade() detects a mismatch via progressive_rfx_quant_cmp_equal() but only emits WLog_WARN, execution continues. The wrapped value (247) is used as a shift exponent, causing undefined behavior and an approximately 80 billion iteration loop (CPU DoS). This issue has been patched in version 3.24.2.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | freerdp2 | < freerdp3 3.24.2+dfsg-1 (forky) | freerdp3 3.24.2+dfsg-1 (forky) |
| debian | freerdp3 | < freerdp3 3.24.2+dfsg-1 (forky) | freerdp3 3.24.2+dfsg-1 (forky) |
| freerdp | freerdp | < 3.24.2 | 3.24.2 |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
osv6.5MEDIUM
vendor_debian6.5MEDIUM
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
FreeRDP: FreeRDP: Denial of Service via specially crafted Remote Desktop Protocol messages
vendor_redhat·2026-03-30·CVSS 6.5
CVE-2026-33983 [MEDIUM] CWE-190 FreeRDP: FreeRDP: Denial of Service via specially crafted Remote Desktop Protocol messages
FreeRDP: FreeRDP: Denial of Service via specially crafted Remote Desktop Protocol messages
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, progressive_decompress_tile_upgrade() detects a mismatch via progressive_rfx_quant_cmp_equal() but only emits WLog_WARN, execution continues. The wrapped value (247) is used as a shift exponent, causing undefined behavior and an approximately 80 billion iteration loop (CPU DoS). This issue has been patched in version 3.24.2.
A flaw was found in FreeRDP, a free implementation of the Remote Desktop Protocol (RDP). A remote attacker could exploit this vulnerability by sending a specially crafted RDP message. This can lead to an undefined behavior where a wrapped value is used as a shift exponent, causing an appro
Debian
CVE-2026-33983: freerdp2 - FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to versio...
vendor_debian·2026·CVSS 6.5
CVE-2026-33983 [MEDIUM] CVE-2026-33983: freerdp2 - FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to versio...
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, progressive_decompress_tile_upgrade() detects a mismatch via progressive_rfx_quant_cmp_equal() but only emits WLog_WARN, execution continues. The wrapped value (247) is used as a shift exponent, causing undefined behavior and an approximately 80 billion iteration loop (CPU DoS). This issue has been patched in version 3.24.2.
Scope: local
bookworm: open
bullseye: open
VulDB
FreeRDP up to 3.24.1 progressive_decompress_tile_upgrade integer overflow (EUVD-2026-17227 / Nessus ID 306291)
vuldb·2026-07-02·CVSS 6.5
CVE-2026-33983 [MEDIUM] FreeRDP up to 3.24.1 progressive_decompress_tile_upgrade integer overflow (EUVD-2026-17227 / Nessus ID 306291)
A vulnerability identified as problematic has been detected in FreeRDP up to 3.24.1. Affected is the function progressive_decompress_tile_upgrade. This manipulation causes integer overflow.
This vulnerability is registered as CVE-2026-33983. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.
OSV
CVE-2026-33983: FreeRDP is a free implementation of the Remote Desktop Protocol
osv·2026-03-30·CVSS 6.5
CVE-2026-33983 [MEDIUM] CVE-2026-33983: FreeRDP is a free implementation of the Remote Desktop Protocol
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, progressive_decompress_tile_upgrade() detects a mismatch via progressive_rfx_quant_cmp_equal() but only emits WLog_WARN, execution continues. The wrapped value (247) is used as a shift exponent, causing undefined behavior and an approximately 80 billion iteration loop (CPU DoS). This issue has been patched in version 3.24.2.
No detection rules found.
No public exploits indexed.
Wiz
CVE-2026-33983 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 5.1
CVE-2026-33983 [MEDIUM] CVE-2026-33983 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-33983 :
NixOS vulnerability analysis and mitigation
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, progressive_decompress_tile_upgrade() detects a mismatch via progressive_rfx_quant_cmp_equal() but only emits WLog_WARN, execution continues. The wrapped value (247) is used as a shift exponent, causing undefined behavior and an approximately 80 billion iteration loop (CPU DoS). This issue has been patched in version 3.24.2.
Source : NVD
## 6.5
Score
Published March 30, 2026
Severity MEDIUM
CNA Score 6.5
Affected Technologies
NixOS
Wolfi
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 15
Exploitation Probability (EPSS) N/A
Affected
Bugzilla
CVE-2026-33983 FreeRDP: FreeRDP: Denial of Service via specially crafted Remote Desktop Protocol messages
bugzilla·2026-03-30·CVSS 6.5
CVE-2026-33983 [MEDIUM] CVE-2026-33983 FreeRDP: FreeRDP: Denial of Service via specially crafted Remote Desktop Protocol messages
CVE-2026-33983 FreeRDP: FreeRDP: Denial of Service via specially crafted Remote Desktop Protocol messages
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.24.2, progressive_decompress_tile_upgrade() detects a mismatch via progressive_rfx_quant_cmp_equal() but only emits WLog_WARN, execution continues. The wrapped value (247) is used as a shift exponent, causing undefined behavior and an approximately 80 billion iteration loop (CPU DoS). This issue has been patched in version 3.24.2.
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 10
Via RHSA-2026:8458 https://access.redhat.com/errata/RHSA-2026:8458
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 9
Via RHSA-2026:84
https://github.com/FreeRDP/FreeRDP/commit/78188ab479c8e6eb9ba2475b3732c76b4bbe5425https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-4gfm-4p52-h478https://access.redhat.com/errata/RHSA-2026:10709https://access.redhat.com/errata/RHSA-2026:11332https://access.redhat.com/errata/RHSA-2026:11333https://access.redhat.com/errata/RHSA-2026:11336https://access.redhat.com/errata/RHSA-2026:11649https://access.redhat.com/errata/RHSA-2026:11651https://access.redhat.com/errata/RHSA-2026:12359https://access.redhat.com/errata/RHSA-2026:12388https://access.redhat.com/errata/RHSA-2026:19033https://access.redhat.com/errata/RHSA-2026:19349https://access.redhat.com/errata/RHSA-2026:8457https://access.redhat.com/errata/RHSA-2026:8458https://access.redhat.com/errata/RHSA-2026:8945https://access.redhat.com/errata/RHSA-2026:9656https://access.redhat.com/security/cve/CVE-2026-33983https://bugzilla.redhat.com/show_bug.cgi?id=2453220https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-33983.json
2026-03-30
Published