Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2025-9307

Опубликовано: 27 июн. 2025
Источник: oracle-oval
Платформа: Oracle Linux 10

Описание

ELSA-2025-9307: freerdp security update (MODERATE)

[2:3.10.3-3]

  • Initialize function pointers after resource allocation
  • Fixes CVE-2025-4478
  • Resolves: RHEL-91583

Обновленные пакеты

Oracle Linux 10

Oracle Linux aarch64

freerdp

3.10.3-3.el10_0

freerdp-devel

3.10.3-3.el10_0

freerdp-libs

3.10.3-3.el10_0

freerdp-server

3.10.3-3.el10_0

libwinpr

3.10.3-3.el10_0

libwinpr-devel

3.10.3-3.el10_0

Oracle Linux x86_64

freerdp

3.10.3-3.el10_0

freerdp-devel

3.10.3-3.el10_0

freerdp-libs

3.10.3-3.el10_0

freerdp-server

3.10.3-3.el10_0

libwinpr

3.10.3-3.el10_0

libwinpr-devel

3.10.3-3.el10_0

Связанные CVE

Связанные уязвимости

CVSS3: 7.1
ubuntu
3 месяца назад

A flaw was found in the FreeRDP used by Anaconda's remote install feature, where a crafted RDP packet could trigger a segmentation fault. This issue causes the service to crash and remain defunct, resulting in a denial of service. It occurs pre-boot and is likely due to a NULL pointer dereference. Rebooting is required to recover the system.

CVSS3: 7.1
redhat
3 месяца назад

A flaw was found in the FreeRDP used by Anaconda's remote install feature, where a crafted RDP packet could trigger a segmentation fault. This issue causes the service to crash and remain defunct, resulting in a denial of service. It occurs pre-boot and is likely due to a NULL pointer dereference. Rebooting is required to recover the system.

CVSS3: 7.1
nvd
3 месяца назад

A flaw was found in the FreeRDP used by Anaconda's remote install feature, where a crafted RDP packet could trigger a segmentation fault. This issue causes the service to crash and remain defunct, resulting in a denial of service. It occurs pre-boot and is likely due to a NULL pointer dereference. Rebooting is required to recover the system.

CVSS3: 7.1
debian
3 месяца назад

A flaw was found in the FreeRDP used by Anaconda's remote install feat ...

CVSS3: 7.1
github
3 месяца назад

A flaw was found in the gnome-remote-desktop used by Anaconda's remote install feature, where a crafted RDP packet could trigger a segmentation fault. This issue causes the service to crash and remain defunct, resulting in a denial of service. It occurs pre-boot and is likely due to a NULL pointer dereference. Rebooting is required to recover the system.