CVE-2026-31806 | FreeRDP up to 3.23.x NSCodec gdi_surface_bits bmp.width/bmp.height heap-based overflow (EUVD-2026-12060 / Nessus ID 302239)
A vulnerability has been found in FreeRDP up to 3.23.x and classified as critical. This impacts the function gdi_surface_bits of the component NSCodec. Performing a manipulation of the argument bmp.width/bmp.height results in heap-based buffer overflow.
This vulnerability is reported as CVE-2026-31806. The attack is possible to be carried out remotely. No exploit exists.
The affected component should be upgraded.