Executive brief
Microsoft Remote Desktop Client is a tool used to access and control computers remotely over a network. A heap-based buffer overflow vulnerability in this software allows an attacker to execute arbitrary code on a victim's machine without authorization, potentially leading to complete system compromise and unauthorized access to sensitive data.
Technical details
This is a heap-based buffer overflow vulnerability in the Remote Desktop Client protocol handling code. The vulnerability can be exploited over the network without authentication or user interaction, allowing an attacker to send a specially crafted RDP message that triggers memory corruption. Successful exploitation results in arbitrary code execution with the privileges of the user running the Remote Desktop Client. The attack vector is network-based, making it remotely exploitable.
Affected products
- Microsoft Remote Desktop Client
Timeline
- 2026-09-08: disclosed