PatchSiren

PatchSiren cyber security CVE debrief

CVE-2026-67302 FreeRDP CVE debrief

FreeRDP versions prior to 3.29.0 are affected by a divide-by-zero vulnerability in the rdpecam camera redirection client. The vulnerability occurs when a malicious or compromised RDP server sends a StartStreamsRequest with FrameRateDenominator set to zero, causing an integer division by zero and termination of the FreeRDP client process. Users of FreeRDP versions prior to 3.29.0, especially those with camera redirection enabled, should be aware of this vulnerability and take necessary actions to protect themselves. This includes verifying FreeRDP versions, enabling compensating controls, and applying patches or upgrades to FreeRDP 3.29.0 or later. Additionally, operators, platforms, and security teams may need to review and update their vulnerability management processes to address this issue effectively. Those responsible for RDP connections and camera redirection should prioritize defensive actions to mitigate potential risks associated with this vulnerability. Security teams should also monitor for suspicious RDP activity and implement additional security measures for RDP connections as needed. IT asset owners and administrators should confirm whether affected product deployments exist in managed environments and assign an owner for follow-up to ensure timely remediation and minimize potential impact on operations. Those managing RDP connections should consider compensating controls for exposed systems while remediation is scheduled and verified. Review relevant monitoring, detection, and logs for exposed assets that need extra review to ensure that potential security incidents are identified and addressed promptly. Exceptions, retest remediated assets, and close the item only after evidence is documented to confirm that vulnerabilities have been mitigated effectively.

Vendor
FreeRDP
Product
Unknown
CVSS
MEDIUM 5.3
CISA KEV
Not listed in stored evidence
Original CVE published
2026-08-01
Original CVE updated
2026-08-01
Advisory published
2026-08-01
Advisory updated
2026-08-01

Who should care

Users of FreeRDP versions prior to 3.29.0, especially those with camera redirection enabled, should be aware of this vulnerability and take necessary actions to protect themselves. This includes verifying FreeRDP versions, enabling compensating controls, and applying patches or upgrades to FreeRDP 3.29.0 or later. Additionally, operators, platforms, and security teams may need to review and update their vulnerability management processes to address this issue effectively. Those responsible for RDP connections and camera redirection should prioritize defensive actions to mitigate potential risks associated with this vulnerability. Security teams should also monitor for suspicious RDP activity and implement additional security measures for RDP connections as needed. IT asset owners and administrators should confirm whether affected product deployments exist in managed environments and assign an owner for follow-up to ensure timely remediation and minimize potential impact on operations. Those managing RDP connections should consider compensating controls for exposed systems while remediation is scheduled and verified. Review relevant monitoring, detection, and logs for exposed assets that need extra review to ensure that potential security incidents are identified and addressed promptly. Exceptions, retest remediated assets, and close the item only after evidence is documented to confirm that vulnerabilities have been mitigated effectively. Those managing FreeRDP deployments should prioritize patching or upgrading to version 3.29.0 or later to prevent exploitation of this vulnerability. Consider reviewing compensating controls for exposed systems while remediation is scheduled and verified. Check relevant monitoring, detection, and logs for exposed assets that need extra review. Track exceptions, retest remediated assets, and close the item only after evidence is documented. Those managing FreeRDP deployments should prioritize patching or upgrading to version 3.29.0 or later to prevent exploitation of this vulnerability. Consider reviewing compensating controls for exposed systems while remediation is scheduled and verified. Check relevant monitoring, detection, 3

Technical summary

FreeRDP before 3.29.0 contains a divide-by-zero vulnerability in the rdpecam camera redirection client. The vulnerability occurs when a malicious or compromised RDP server sends a StartStreamsRequest with FrameRateDenominator set to zero, causing an integer division by zero and termination of the FreeRDP client process. Camera redirection must be enabled on the client for the channel to be reachable. Fixed in FreeRDP 3.29.0. The vulnerability can be mitigated by verifying FreeRDP versions, enabling compensating controls, and applying patches or upgrades to FreeRDP 3.29.0 or later.

Defensive priority

Medium-priority defensive actions are recommended due to the potential for denial-of-service attacks through exploitation of this vulnerability.

Recommended defensive actions

  • Inventory and verify FreeRDP versions, specifically checking if versions are prior to 3.29.0.
  • Enable compensating controls, such as monitoring for suspicious RDP activity.
  • Apply the patch or upgrade to FreeRDP 3.29.0 or later.
  • Disable camera redirection if not required.
  • Implement additional security measures for RDP connections.

Evidence notes

FreeRDP versions prior to 3.29.0 are affected by a divide-by-zero vulnerability in the rdpecam camera redirection client. Evidence is limited; verify FreeRDP versions and configurations; check for camera redirection enablement; monitor for suspicious RDP activity. Consider reviewing official advisories and CVE records for further details.

Official resources

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-08-01T13:16:59.677Z and has not been modified since then.