[ALSA-2026:6918] Important: freerdp security update
Type:
security
Severity:
important
Release date:
2026-04-09
Description:
FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. The xfreerdp client can connect to RDP servers such as Microsoft Windows machines, xrdp, and VirtualBox. Security Fix(es): * freerdp: FreeRDP heap-use-after-free (CVE-2026-22856) * freerdp: FreeRDP heap-buffer-overflow (CVE-2026-22854) * freerdp: FreeRDP heap-buffer-overflow (CVE-2026-22852) * freerdp: FreeRDP: Denial of Service via FastGlyph parsing buffer overflow (CVE-2026-23732) * freerdp: FreeRDP: Denial of Service via use-after-free in AUDIN format renegotiation (CVE-2026-24676) * freerdp: FreeRDP has a heap-use-after-free in video_timer (CVE-2026-24491) * freerdp: FreeRDP has a NULL Pointer Dereference in rdp_write_logon_info_v2() (CVE-2026-23948) * freerdp: FreeRDP has a Heap-use-after-free in play_thread (CVE-2026-24684) * freerdp: FreeRDP has a heap-use-after-free in urb_bulk_transfer_cb (CVE-2026-24681) * freerdp: FreeRDP has a heap-use-after-free in ainput_send_input_event (CVE-2026-24683) * freerdp: FreeRDP has a heap-buffer-overflow in urb_select_interface (CVE-2026-24679) * freerdp: FreeRDP has a Heap-use-after-free in urb_select_interface (CVE-2026-24675) * freerdp: FreeRDP: Arbitrary code execution via crafted Remote Desktop Protocol (RDP) server messages (CVE-2026-31806) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 freerdp-devel-2.11.7-6.el8_10.aarch64.rpm 1184a542dde21e927f4dec9fc2b01b70a903d457465e313a7f60a379b612b278
aarch64 libwinpr-2.11.7-6.el8_10.aarch64.rpm 32554799c93192de8f664047040f02c92a922ff99165beb7786f444f56469a9c
aarch64 freerdp-libs-2.11.7-6.el8_10.aarch64.rpm 608892259ca86992e0b15bcd05ab908e0361080e8b7226b0e2120d8f3d5917bb
aarch64 freerdp-2.11.7-6.el8_10.aarch64.rpm a3ed394dadd111ac489a6c908a5f56a86bbc1ebf3e03c4c8fa635edad8f355a3
aarch64 libwinpr-devel-2.11.7-6.el8_10.aarch64.rpm b3bc4c858c4b5f2a86f1de89ec41260e02501ffc652463d43cbb57f93e998651
i686 freerdp-devel-2.11.7-6.el8_10.i686.rpm 4e7868590ade3c6d43d7256f79623de6eee906d34bd6f38c7494b0cc3fb9c03d
i686 libwinpr-2.11.7-6.el8_10.i686.rpm 6deaf10740f0e20f7750650de0c8784e59644ccba70eb73c493f5319cf002101
i686 libwinpr-devel-2.11.7-6.el8_10.i686.rpm cce63c0e89a1e6dfed7a618660d1cd7940781a27a848e9476c2f58fd7f3c5890
i686 freerdp-libs-2.11.7-6.el8_10.i686.rpm d900f0bb53633dca166235dd045a2c26a6802b6d1cac680d38878682f955dd82
ppc64le freerdp-devel-2.11.7-6.el8_10.ppc64le.rpm 0c925eb0b43c67436d77f9121083c7d1b682063a15c00ec83da348ef71dfed05
ppc64le libwinpr-devel-2.11.7-6.el8_10.ppc64le.rpm 1ecbbb575da306b7630538dfc52cf824d0283b57c6524c53236d5779bb7d55fc
ppc64le freerdp-2.11.7-6.el8_10.ppc64le.rpm 42ce58ad441c2fa4f062813af70f75cbfd1cbb127f741a108bb903b2edbb5ca6
ppc64le freerdp-libs-2.11.7-6.el8_10.ppc64le.rpm 57c01fc8a8533ab8becb7a5e5708a972dbbac928adf52ffdbb40af4dc5dbca8b
ppc64le libwinpr-2.11.7-6.el8_10.ppc64le.rpm 6133ba9ef1abae5fe5f4ee935a79841a1f808d66981a6025fbabe41e9405adb1
s390x freerdp-2.11.7-6.el8_10.s390x.rpm 424f39af18fbabd510f724396c70ab92bcaada8f32f2218d157bb7ba948545ba
s390x freerdp-libs-2.11.7-6.el8_10.s390x.rpm 4419632338f8a8f1c519cc5f3a72ad715e847bc234cb8d547460cae63265e61a
s390x freerdp-devel-2.11.7-6.el8_10.s390x.rpm 8b92bf22900633fa33c4330e3792521cd2d692d7033db3622bc2f4e1a3ea8b71
s390x libwinpr-2.11.7-6.el8_10.s390x.rpm e6091b85818741fa09afb6225ef4d6ee1595242a85b2f80019e94172bad64bae
s390x libwinpr-devel-2.11.7-6.el8_10.s390x.rpm ff114c7bed8eef16a4f25cd6eb2b28bdf699244fff28bd40837d69cffb1c902d
x86_64 libwinpr-2.11.7-6.el8_10.x86_64.rpm 6115cc78e6a8531b125169dfed7806c11ce56c09f11f181a2c1fcc3d335cfe8d
x86_64 freerdp-devel-2.11.7-6.el8_10.x86_64.rpm 8cdbcf19b3f1236bd0e1dd633af65bc33239851a9527563c9f45c63433b77b84
x86_64 freerdp-2.11.7-6.el8_10.x86_64.rpm 989f9eff7e1a200df687aa61538190f4ae3b141afd95f38b6855036854c8ccd9
x86_64 libwinpr-devel-2.11.7-6.el8_10.x86_64.rpm 9aba3036a066cc331af72340427f9f6caad7c360079e74cd5709a287f2d3ec59
x86_64 freerdp-libs-2.11.7-6.el8_10.x86_64.rpm e3ff32607d25659e3a22b86c0878f3569b063226b8acb1354d490659094e7de7
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.