[ALSA-2026:16014] Moderate: freerdp security update
Type:
security
Severity:
moderate
Release date:
2026-05-13
Description:
FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. The xfreerdp client can connect to RDP servers such as Microsoft Windows machines, xrdp, and VirtualBox. Security Fix(es): * freerdp: FreeRDP: Denial of service via heap use-after-free during auto-reconnect (CVE-2026-25997) * freerdp: FreeRDP: Denial of service due to use-after-free vulnerability (CVE-2026-25952) * freerdp: FreeRDP: Denial of Service via double free vulnerability during disconnect (CVE-2026-26986) * freerdp: FreeRDP has a heap-buffer-overflow in bitmap_cache_put via OOB cacheId (CVE-2026-29775) * freerdp: FreeRDP has an out-of-bounds read in ADPCM decoders due to missing predictor/step_index bounds checks (CVE-2026-31885) * freerdp: FreeRDP has a division-by-zero in ADPCM decoders when `nBlockAlign` is 0 (CVE-2026-31884) * freerdp: FreeRDP: Denial of Service via crafted audio data in RDP (CVE-2026-31883) * FreeRDP: FreeRDP: Information disclosure via heap memory out of bounds read (CVE-2026-33985) * FreeRDP: FreeRDP: Information disclosure and denial of service via heap-buffer-overflow read (CVE-2026-33982) * FreeRDP: FreeRDP: Memory corruption vulnerability allows denial of service or arbitrary code execution (CVE-2026-33987) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 libwinpr-devel-3.10.3-5.el10_1.8.aarch64.rpm 4a3277e25bcf4b662e1d23d0898edd904163ec2aaedecf59fd8cceb1e879d221
aarch64 freerdp-server-3.10.3-5.el10_1.8.aarch64.rpm 4bd347a642ba76d85ff18f29e2b39dc3ff9b870902b96e3738483e96cd2612a2
aarch64 libwinpr-3.10.3-5.el10_1.8.aarch64.rpm 7ee5e72efd033e947ba8b166f1eebcb1672e5427b4c6b21dc4245914e3217fdc
aarch64 freerdp-3.10.3-5.el10_1.8.aarch64.rpm 95038b600e522adfec8525fdc352e0d34a393ec8a47fd16eb41521b4b1c2fc69
aarch64 freerdp-devel-3.10.3-5.el10_1.8.aarch64.rpm ac66cb955865ed760197dc01cac55d5a0442eebfe409ac4bb27cd04fd6f790e9
aarch64 freerdp-libs-3.10.3-5.el10_1.8.aarch64.rpm ea926fd9acf35159b002b88aad5849bca7144bf0fbe55394ade106d201db2bf9
ppc64le libwinpr-devel-3.10.3-5.el10_1.8.ppc64le.rpm 0f89be363b52d44c5066a3fb0087fc0e4e41a451c258e83a3228aa9bf9ea5ca6
ppc64le freerdp-devel-3.10.3-5.el10_1.8.ppc64le.rpm 65711e3608b2208f46b057b5a4275ffee77ddb6865e41be7cd359a3ca391ec2a
ppc64le libwinpr-3.10.3-5.el10_1.8.ppc64le.rpm 991f28d857f600c7923445e900b6e7156df2459962ac5ac1541a16db4980f6eb
ppc64le freerdp-libs-3.10.3-5.el10_1.8.ppc64le.rpm a21142e9f737533a268818ab3f7377f92540bde5a4fc0ee630181ecee600b6bc
ppc64le freerdp-server-3.10.3-5.el10_1.8.ppc64le.rpm fd1cbcb93c0af91a62e987e0cb63d96fee7dd801ba3555e3fa16ee9a508b197e
ppc64le freerdp-3.10.3-5.el10_1.8.ppc64le.rpm fdb057fc38cd3e73cc7e5180b8f1d8aae3d3a2efa8ff1682eb712e188a490182
s390x freerdp-server-3.10.3-5.el10_1.8.s390x.rpm 296be2df535840e849d3fa145ce62bd44bcc4d9901fbe6b61caafa07a5727b93
s390x freerdp-devel-3.10.3-5.el10_1.8.s390x.rpm 8a6bafaa6f98fe7039e32a885ddc7dc2c7dd98dcf4f24db4c98f280f489ba394
s390x freerdp-libs-3.10.3-5.el10_1.8.s390x.rpm 991b2fd8cf785cf0343c3003886f1bf4443e4807b32f38eb252adfb2ab584997
s390x libwinpr-devel-3.10.3-5.el10_1.8.s390x.rpm b64a896cf8bf1fff02de7b762d39374717f8b66d6e494e78b2bca4f1de46cbcb
s390x libwinpr-3.10.3-5.el10_1.8.s390x.rpm c6aef9ff86ac0afa305c3f9e5a631f5d0cf0560a75952b958395be630cd00385
s390x freerdp-3.10.3-5.el10_1.8.s390x.rpm f9c061214fb29586091ce41e8cff376b44f2326b51c2f4f1fac22789b1819a6a
x86_64 freerdp-devel-3.10.3-5.el10_1.8.x86_64.rpm 1ad219f65ed0008191b26768c3b6746337247d986961d9f5c8a918484c52698f
x86_64 libwinpr-3.10.3-5.el10_1.8.x86_64.rpm 1d125219b9431b9124fcb8b1e28ab63db47cb928d04c2217e72a80a19e2062cf
x86_64 freerdp-server-3.10.3-5.el10_1.8.x86_64.rpm 300af9338423303a64ce481f8d7bd6db9a1b7186047b1808dbef4d5119da3f5c
x86_64 libwinpr-devel-3.10.3-5.el10_1.8.x86_64.rpm 329ef62aa9910be7737a1560751ec9d49977f29e3a889ec025fb928c735cafde
x86_64 freerdp-libs-3.10.3-5.el10_1.8.x86_64.rpm 8183655b1bb72f710d2c83e07db608160be1e28d3247ffe55f876452bb12c0ec
x86_64 freerdp-3.10.3-5.el10_1.8.x86_64.rpm bce5c8aed9be692eeaa039050cf9bd27a2a581335ce780f5e06ce4d79344b8eb
x86_64_v2 freerdp-libs-3.10.3-5.el10_1.8.x86_64_v2.rpm 04df8c75068e6c4688f92764824973444412d16d152ca739bf41320c4af986ea
x86_64_v2 freerdp-3.10.3-5.el10_1.8.x86_64_v2.rpm 17327f6b7ee3fe580b109b09fbb951ac7262d6aaf8856c93d366682291edc26b
x86_64_v2 freerdp-server-3.10.3-5.el10_1.8.x86_64_v2.rpm 711cac3b0025e513e6381dda4f410feead57f29cf518c8f53a6936a66b8b3225
x86_64_v2 libwinpr-3.10.3-5.el10_1.8.x86_64_v2.rpm 95252e7afd65e2ce40a44dd74385938221766f104ed54f3b2aeeff44dcd99ca3
x86_64_v2 libwinpr-devel-3.10.3-5.el10_1.8.x86_64_v2.rpm a31014f3eb3ccb065ea8e4a05f2fb7094f081569d92a89bcab5d1525587d0f04
x86_64_v2 freerdp-devel-3.10.3-5.el10_1.8.x86_64_v2.rpm b16b3f1ee92323f18cf2f42251e0178330f52e4de7d2a97067ee12e285fd69b8
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.