RHSA-2025:10635: Moderate: gnome-remote-desktop security update
GNOME Remote Desktop is a remote desktop and screen sharing service for the GNOME desktop environment.Security Fix(es): gnome-remote-desktop: Uncontrolled Resource Consumption due to Malformed RDP PDUs (CVE-2025-5024) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Other sources
Moderate: gnome-remote-desktop security update
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
Which systems and packages should be checked for this update?
Systems using the Red Hat gnome-remote-desktop package are in scope, including the listed IBM z Systems, Power little-endian, and ARM 64 Red Hat Enterprise Linux support channels. The advisory also lists associated debuginfo and debugsource packages.
What condition is associated with exploitation?
The issue involves uncontrolled resource consumption when gnome-remote-desktop processes malformed RDP protocol data units. Exposure therefore depends on use of the GNOME Remote Desktop service and its handling of RDP connections.
What is the recommended remediation?
Apply the update described by RHSA-2025:10635 using Red Hat's update instructions. The provided advisory data does not specify an alternative mitigation if patching must be delayed.