top of page
perceptive_background_267k.jpg

FreeRDP before 3.29.0 fails to enforce the RESPONSE_SIZE_LIMIT when processing Transfer-Encoding: chunked HTTP responses in http_response_recv_body(). Attackers…

Published:

1 August 2026 at 00:00:00

Alert date:

1 August 2026 at 16:10:40

Source:

nvd.nist.gov

Click to open the original link from this advisory

Network Infrastructure, Web Technologies

FreeRDP versions before 3.29.0 contain a vulnerability in the http_response_recv_body() function that fails to enforce the RESPONSE_SIZE_LIMIT when processing Transfer-Encoding: chunked HTTP responses. This flaw allows attackers who control a malicious RD Gateway endpoint to send oversized chunked response bodies to clients. The client-side size limit is bypassed entirely when chunked transfer encoding is used, leading to uncontrolled memory consumption. The impact is a denial-of-service condition through client memory resource exhaustion. Users and organizations relying on FreeRDP for Remote Desktop Gateway connectivity are at risk if they connect to untrusted or compromised RD Gateway servers. The fix is available in FreeRDP 3.29.0 and users are advised to upgrade immediately.

Technical details

Mitigation steps:

Affected products:

FreeRDP

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Disclaimer: Deze website toont informatie afkomstig van externe bronnen. Perceptive aanvaardt geen verantwoordelijkheid voor de inhoud, juistheid of volledigheid van deze informatie.

bottom of page