First published: Tue Nov 12 2024(Updated: )
FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. The xfreerdp client can connect to RDP servers such as Microsoft Windows machines, xrdp, and VirtualBox.<br>Security Fix(es):<br><li> freerdp: Integer Overflow leading to Heap Overflow in freerdp_bitmap_planar_context_reset (CVE-2024-22211)</li> <li> freerdp: out-of-bounds read in ncrush_decompress (CVE-2024-32459)</li> <li> freerdp: OutOfBound Read in interleaved_decompress (CVE-2024-32460)</li> <li> freerdp: Integer overflow & OutOfBound Write in clear_decompress_residual_data (CVE-2024-32039)</li> <li> freerdp: integer underflow in nsc_rle_decode (CVE-2024-32040)</li> <li> freerdp: OutOfBound Read in zgfx_decompress_segment (CVE-2024-32041)</li> <li> freerdp: OutOfBound Read in planar_skip_plane_rle (CVE-2024-32458)</li> <li> freerdp: out-of-bounds read (CVE-2024-32662)</li> <li> FreeRDP: ExtractRunLengthRegular* out of bound read (CVE-2024-32658)</li> <li> freerdp: zgfx_decompress out of memory (CVE-2024-32660)</li> <li> freerdp: freerdp_image_copy out of bound read (CVE-2024-32659)</li> <li> freerdp: rdp_write_logon_info_v1 NULL access (CVE-2024-32661)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.<br>Additional Changes:<br>For detailed information on changes in this release, see the Red Hat Enterprise Linux 9.5 Release Notes linked from the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Red Hat CodeReady Linux Builder for x86_64 | ||
Red Hat Red Hat Enterprise Linux for x86_64 | ||
Red Hat Red Hat Enterprise Linux for IBM z Systems | ||
Red Hat Red Hat Enterprise Linux for ARM 64 | ||
Red Hat Red Hat CodeReady Linux Builder for Power, little endian | ||
Red Hat Red Hat Enterprise Linux for Power, little endian | ||
Red Hat Red Hat CodeReady Linux Builder for IBM z Systems | ||
Red Hat Red Hat CodeReady Linux Builder for ARM 64 | ||
redhat/freerdp | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/freerdp | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/freerdp-debuginfo | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/freerdp-debuginfo | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/freerdp-debugsource | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/freerdp-debugsource | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/freerdp-libs | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/freerdp-libs | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/freerdp-libs-debuginfo | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/freerdp-libs-debuginfo | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/libwinpr | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/libwinpr | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/libwinpr-debuginfo | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/libwinpr-debuginfo | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/freerdp | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/freerdp-debuginfo | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/freerdp-debugsource | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/freerdp-libs | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/freerdp-libs-debuginfo | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/libwinpr | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/libwinpr-debuginfo | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/freerdp | <2.11.7-1.el9.aa | 2.11.7-1.el9.aa |
redhat/freerdp-debuginfo | <2.11.7-1.el9.aa | 2.11.7-1.el9.aa |
redhat/freerdp-debugsource | <2.11.7-1.el9.aa | 2.11.7-1.el9.aa |
redhat/freerdp-libs | <2.11.7-1.el9.aa | 2.11.7-1.el9.aa |
redhat/freerdp-libs-debuginfo | <2.11.7-1.el9.aa | 2.11.7-1.el9.aa |
redhat/libwinpr | <2.11.7-1.el9.aa | 2.11.7-1.el9.aa |
redhat/libwinpr-debuginfo | <2.11.7-1.el9.aa | 2.11.7-1.el9.aa |
redhat/freerdp-devel | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/freerdp-devel | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/libwinpr-devel | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/libwinpr-devel | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/freerdp-devel | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/libwinpr-devel | <2.11.7-1.el9 | 2.11.7-1.el9 |
redhat/freerdp-devel | <2.11.7-1.el9.aa | 2.11.7-1.el9.aa |
redhat/libwinpr-devel | <2.11.7-1.el9.aa | 2.11.7-1.el9.aa |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.