FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.24.0, Integer Underflow in updatereadcachebitmaporder Function of FreeRDP's Core Library This vulnerability is fixed in 3.24.0.
{
"cwe_ids": [
"CWE-190",
"CWE-191",
"CWE-400",
"CWE-789"
],
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/29xxx/CVE-2026-29776.json",
"cna_assigner": "GitHub_M"
}{
"cpe": "cpe:2.3:a:freerdp:freerdp:*:*:*:*:*:*:*:*",
"source": [
"CPE_RANGE",
"REFERENCES"
],
"extracted_events": [
{
"introduced": "0"
},
{
"fixed": "3.24.0"
}
]
}"2026-07-22T03:08:51Z"
[
{
"signature_type": "Function",
"target": {
"file": "libfreerdp/core/orders.c",
"function": "update_read_cache_bitmap_order"
},
"deprecated": false,
"source": "https://github.com/freerdp/freerdp/commit/a9e0abf2eac8c2e370fa155bf1abb9d044c0ca8a",
"id": "CVE-2026-29776-3d2fed54",
"signature_version": "v1",
"digest": {
"function_hash": "172597527850787046167236139610288703032",
"length": 1378.0
}
},
{
"signature_type": "Line",
"target": {
"file": "libfreerdp/core/orders.c"
},
"deprecated": false,
"source": "https://github.com/freerdp/freerdp/commit/a9e0abf2eac8c2e370fa155bf1abb9d044c0ca8a",
"id": "CVE-2026-29776-5022a208",
"signature_version": "v1",
"digest": {
"line_hashes": [
"1785271123383002342836364751318726014",
"321462268996599184274246693905732089863",
"338845865482363519127102168848516988541",
"55974180637473686646136001727735578801"
],
"threshold": 0.9
}
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-29776.json"