You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
rdp patch guidance
About this tag
This tag covers guidance on patching Remote Desktop Protocol vulnerabilities, with a focus on CVE-2025-58718, a high-severity use-after-free flaw in the RDP Client. The vulnerability allows a malicious RDP server to execute arbitrary code on a connecting client, carrying a CVSS score of 8.8. Discussions emphasize the need for user interaction, as exploitation requires a client to connect to a crafted server. The tag provides patch guidance for Microsoft's advisory, helping users understand the risk and apply updates to secure their systems against this and similar RDP-related threats.
Microsoft has published an advisory for CVE-2025-58718, a high‑severity use‑after‑free vulnerability in the Remote Desktop Client that can allow a malicious RDP server to execute arbitrary code on a client that connects to it; the vendor and multiple independent trackers assign a CVSS v3.1 base...