CVE-2026-23531 | FreeRDP up to 3.20.x clear_decompress heap-based overflow (GHSA-xj5h-9cr5-23c5 / EUVD-2026-3317)
A vulnerability described as critical has been identified in FreeRDP up to 3.20.x. This affects the function clear_decompress. Executing a manipulation can lead to heap-based buffer overflow.
The identification of this vulnerability is CVE-2026-23531. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.