Impact
A heap‑based buffer overflow in the Remote Desktop Client allows an attacker to execute arbitrary code over a network. The flaw involves a use‑after‑free condition and an out‑of‑bounds write that can be triggered remotely, giving the attacker code‑execution privileges of the user who is logged into the Remote Desktop session. This is classified as CWE‑416 and CWE‑787.
Affected Systems
Microsoft Windows 10 versions 1809, 21H2, and 22H2; Windows 11 versions 23H2, 24H2, 25H2, and 26H1; and Windows Server 2019, 2022, and 2025, including their Server Core installations.
Risk and Exploitability
The vulnerability has a CVSS score of 7.5, indicating a high impact. Its EPSS score is less than 1%, which is a very low but nonzero exploitation probability, and it is not listed in CISA’s KEV catalog. The likely attack vector is a remote RDP session from an untrusted network, meaning that any machine using Remote Desktop could be targeted if an attacker manages to induce the overflow during a client‑side connection.
OpenCVE Enrichment