CVE-2025-4478: Gnome-remote-desktop: freerdp: unauthenticated rdp packet causes segfault in freerdp leading to denial of service
A flaw was found in the FreeRDP used by Anaconda's remote install feature, where a crafted RDP packet could trigger a segmentation fault. This issue causes the service to crash and remain defunct, resulting in a denial of service. It occurs pre-boot and is likely due to a NULL pointer dereference. Rebooting is required to recover the system.
Other sources
The vulnerability stems from improper handling of malformed RDP packets in gnome-remote-desktop when remote access is enabled. An unauthenticated attacker can trigger a segmentation fault, leaving the service in a defunct state and causing a denial-of-service condition until a manual reboot is performed.
— Red Hat
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4478?
CVE-2025-4478 is classified as a denial of service vulnerability due to a segmentation fault triggered by a crafted RDP packet.
How do I fix CVE-2025-4478?
To mitigate CVE-2025-4478, update the gnome-remote-desktop to the latest version that addresses this vulnerability.
What impact does CVE-2025-4478 have on systems?
CVE-2025-4478 causes the gnome-remote-desktop service to crash, resulting in a denial of service during the remote install process.
Is CVE-2025-4478 exploitable remotely?
Yes, CVE-2025-4478 can be exploited remotely by sending specially crafted RDP packets to the vulnerable service.
Which software is affected by CVE-2025-4478?
CVE-2025-4478 specifically affects the gnome-remote-desktop application used by Anaconda's remote install feature.