FreeRDP prior to version 2.0.0-rc4 contains a Heap-Based Buffer Overflow in function zgfx_decompress_segment() that results in a memory corruption and probably even a remote code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.147
EPSS Ranking 94.1%