Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2026-2048

Опубликовано: 05 фев. 2026
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2026-2048: freerdp security update (IMPORTANT)

[2:2.11.7-1.1]

  • Backport several CVE fixes Resolves: RHEL-142426, RHEL-142410, RHEL-142394, RHEL-142378, RHEL-142362, Resolves: RHEL-142346, RHEL-142330

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

freerdp

2.11.7-1.el9_7.1

freerdp-devel

2.11.7-1.el9_7.1

freerdp-libs

2.11.7-1.el9_7.1

libwinpr

2.11.7-1.el9_7.1

libwinpr-devel

2.11.7-1.el9_7.1

Oracle Linux x86_64

freerdp

2.11.7-1.el9_7.1

freerdp-devel

2.11.7-1.el9_7.1

freerdp-libs

2.11.7-1.el9_7.1

libwinpr

2.11.7-1.el9_7.1

libwinpr-devel

2.11.7-1.el9_7.1

Связанные уязвимости

oracle-oval
4 дня назад

ELSA-2026-2081: freerdp security update (IMPORTANT)

suse-cvrf
10 дней назад

Security update for freerdp

CVSS3: 9.8
ubuntu
20 дней назад

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0,`freerdp_bitmap_decompress_planar` does not validate `nSrcWidth`/`nSrcHeight` against `planar->maxWidth`/`maxHeight` before RLE decode. A malicious server can trigger a client‑side heap buffer overflow, causing a crash (DoS) and potential heap corruption with code‑execution risk depending on allocator behavior and surrounding heap layout. Version 3.21.0 contains a patch for the issue.

CVSS3: 9.8
nvd
20 дней назад

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.21.0,`freerdp_bitmap_decompress_planar` does not validate `nSrcWidth`/`nSrcHeight` against `planar->maxWidth`/`maxHeight` before RLE decode. A malicious server can trigger a client‑side heap buffer overflow, causing a crash (DoS) and potential heap corruption with code‑execution risk depending on allocator behavior and surrounding heap layout. Version 3.21.0 contains a patch for the issue.

CVSS3: 9.8
debian
20 дней назад

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior ...