Junglewise Threat Intelligence

CVE-2026-68828: Microsoft Remote Desktop Client heap buffer overflow

CVE-2026-68828 · Severity: high · CVSS 8.8 · Published 2026-09-08

Technologies: Microsoft Remote Desktop Client. Vendors: Microsoft.

Executive brief

Microsoft Remote Desktop Client is a software tool that allows users to connect to and control computers remotely over a network. A heap-based buffer overflow vulnerability in this application could allow an attacker to execute malicious code on the client system over the network without requiring authentication, potentially leading to complete system compromise, data theft, or malware installation.

Technical details

A heap-based buffer overflow vulnerability exists in the Remote Desktop Client that allows remote code execution over the network. The vulnerability is reachable without authentication, meaning an attacker on the network can trigger the overflow by sending a specially crafted RDP protocol message. The buffer overflow condition allows an attacker to overwrite heap memory and achieve arbitrary code execution with the privileges of the user running the client. A fix from Microsoft is expected to be available through Windows Update or the Microsoft Security Update Guide.

Affected products

  • Microsoft Remote Desktop Client

Timeline

  • 2026-09-08: disclosed

References

Related threats