# CVE-2026-42909

> Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

- **CVSS:** 7.5 (HIGH)
- **EPSS:** 0.4%
- **CWE:** CWE-362, CWE-416

Canonical: https://intel.threadlinqs.com/cve/CVE-2026-42909
Full threat coverage + IOCs via the Threadlinqs MCP server (Purple tier): https://intel.threadlinqs.com/mcp
