PT-2026-32827 · Microsoft · Remote Desktop Client+1

·

CVE-2026-32157

·

Published

2026-04-14

·

Updated

2026-05-10

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Remote Desktop client for Windows Desktop versions 1.2.0.0 through 2.0.1069.0
Description A use-after-free vulnerability in the Remote Desktop Client allows an unauthorized remote attacker to execute arbitrary code over a network. This occurs by triggering memory corruption during client processing. Use-after-free is a condition where a program continues to use a pointer after it has been freed, which can lead to crashes or malicious code execution.
Recommendations Update to version 2.0.1070.0.

Fix

RCE

DoS

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-05496
CVE-2026-32157

Affected Products

Remote Desktop Client
Windows