Security News

Cybersecurity news aggregator

🔄
HIGH Updates Red Hat Errata

RHSA-2026:46384: Important: freerdp security update

A critical out-of-bounds write vulnerability (CVE-2026-45700, CVSS 9.8) in the FreeRDP planar bitmap decoder allows for remote code execution. All FreeRDP versions prior to 3.26.0 are affected. The fix requires upgrading FreeRDP to version 3.26.0.
Read Full Article →

Red Hat Product Errata RHSA-2026:46384 - Security Advisory Issued: 2026-07-27 Updated: 2026-07-27 RHSA-2026:46384 - Security Advisory Overview Updated Packages Synopsis Important: freerdp security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for freerdp is now available for Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support and Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. The xfreerdp client can connect to RDP servers such as Microsoft Windows machines, xrdp, and VirtualBox. Security Fix(es): freerdp: FreeRDP: Out-of-bounds write in planar bitmap decoder allows arbitrary code execution (CVE-2026-45700) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux for x86_64 - Extended Life Cycle Long Life 8.4 x86_64 Red Hat Enterprise Linux Server - AUS 8.4 x86_64 Fixes BZ - 2483470 - CVE-2026-45700 freerdp: FreeRDP: Out-of-bounds write in planar bitmap decoder allows arbitrary code execution CVEs CVE-2026-45700 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux for x86_64 - Extended Life Cycle Long Life 8.4 SRPM freerdp-2.2.0-14.el8_4.1.src.rpm SHA-256: 89e7d45b273e4993964d824edca39214f9ac152436f97eff4b796909862465b8 x86_64 freerdp-2.2.0-14.el8_4.1.x86_64.rpm SHA-256: a418dcff0a2f33314cfb79162ff09f7a9b59cb11659bc1a90d0e5eea3a4ee398 freerdp-debuginfo-2.2.0-14.el8_4.1.i686.rpm SHA-256: 540ccd844b9d9cb1c571b405a688cc33cf995b0443f9bcf4066f2d7f792313ec freerdp-debuginfo-2.2.0-14.el8_4.1.x86_64.rpm SHA-256: a9cc50e8d14c36c1054b466e3c590c1ab51a66570c7c5cb72bbc1fd8d61492d4 freerdp-debugsource-2.2.0-14.el8_4.1.i686.rpm SHA-256: 3dcd39159ed9347bc8c0f58249c92365c38cd7abe936a77a021beb55b40b77e7 freerdp-debugsource-2.2.0-14.el8_4.1.x86_64.rpm SHA-256: 70f6552209357cbaa3fedadb52d2aaacc01fbf3420a6fb91546be2d2d9b6b633 freerdp-libs-2.2.0-14.el8_4.1.i686.rpm SHA-256: 5024c4b70cd052fd4e64aa07c56ce2667fa89476f4fa103f854e18449948954c freerdp-libs-2.2.0-14.el8_4.1.x86_64.rpm SHA-256: 2a316c60ba56a6557054c80c3298d6af2fb9d2b40c889eace05f26f439d1c3e9 freerdp-libs-debuginfo-2.2.0-14.el8_4.1.i686.rpm SHA-256: 25517b362968f4c49796f04a6a327e572e885bb05d650c53ae2699d2a5c9ed99 freerdp-libs-debuginfo-2.2.0-14.el8_4.1.x86_64.rpm SHA-256: 7554469e3ad81611bc21dce240a50111d13821aabf968035ba6c6f7149beedad libwinpr-2.2.0-14.el8_4.1.i686.rpm SHA-256: 47e6ad2a187793a1fc17df7a0add48d4e02ebfebf7b49d78128a8437b0ea3eec libwinpr-2.2.0-14.el8_4.1.x86_64.rpm SHA-256: bf29734f1963eaac5efd526f84ca164e8192eaff460c02340c060f2113cbf4cf libwinpr-debuginfo-2.2.0-14.el8_4.1.i686.rpm SHA-256: 528f5d7005cc60d02bc28558bb43574e648188a10c8b5e8042df5ef7812ae3f3 libwinpr-debuginfo-2.2.0-14.el8_4.1.x86_64.rpm SHA-256: b03341d182ddc19ee3d6f67057c6c66a281e6bc26d4e68d11b6f3f7cb86bc4ce libwinpr-devel-2.2.0-14.el8_4.1.i686.rpm SHA-256: 62aa1d04e28942b0f96b289753753b10367dee87889da35a3a8ae5109aa01bc4 libwinpr-devel-2.2.0-14.el8_4.1.x86_64.rpm SHA-256: b6a33592749e1cf26c360a13e11800a6bf66320126a9b6ef3a52519bc47dd1df Red Hat Enterprise Linux Server - AUS 8.4 SRPM freerdp-2.2.0-14.el8_4.1.src.rpm SHA-256: 89e7d45b273e4993964d824edca39214f9ac152436f97eff4b796909862465b8 x86_64 freerdp-2.2.0-14.el8_4.1.x86_64.rpm SHA-256: a418dcff0a2f33314cfb79162ff09f7a9b59cb11659bc1a90d0e5eea3a4ee398 freerdp-debuginfo-2.2.0-14.el8_4.1.i686.rpm SHA-256: 540ccd844b9d9cb1c571b405a688cc33cf995b0443f9bcf4066f2d7f792313ec freerdp-debuginfo-2.2.0-14.el8_4.1.x86_64.rpm SHA-256: a9cc50e8d14c36c1054b466e3c590c1ab51a66570c7c5cb72bbc1fd8d61492d4 freerdp-debugsource-2.2.0-14.el8_4.1.i686.rpm SHA-256: 3dcd39159ed9347bc8c0f58249c92365c38cd7abe936a77a021beb55b40b77e7 freerdp-debugsource-2.2.0-14.el8_4.1.x86_64.rpm SHA-256: 70f6552209357cbaa3fedadb52d2aaacc01fbf3420a6fb91546be2d2d9b6b633 freerdp-libs-2.2.0-14.el8_4.1.i686.rpm SHA-256: 5024c4b70cd052fd4e64aa07c56ce2667fa89476f4fa103f854e18449948954c freerdp-libs-2.2.0-14.el8_4.1.x86_64.rpm SHA-256: 2a316c60ba56a6557054c80c3298d6af2fb9d2b40c889eace05f26f439d1c3e9 freerdp-libs-debuginfo-2.2.0-14.el8_4.1.i686.rpm SHA-256: 25517b362968f4c49796f04a6a327e572e885bb05d650c53ae2699d2a5c9ed99 freerdp-libs-debuginfo-2.2.0-14.el8_4.1.x86_64.rpm SHA-256: 7554469e3ad81611bc21dce240a50111d13821aabf968035ba6c6f7149beedad libwinpr-2.2.0-14.el8_4.1.i686.rpm SHA-256: 47e6ad2a187793a1fc17df7a0add48d4e02ebfebf7b49d78128a8437b0ea3eec libwinpr-2.2.0-14.el8_4.1.x86_64.rpm SHA-256: bf29734f1963eaac5efd526f84ca164e8192eaff460c02340c060f2113cbf4cf libwinpr-debuginfo-2.2.0-14.el8_4.1.i686.rpm SHA-256: 528f5d7005cc60d02bc28558bb43574e648188a10c8b5e8042df5ef7812ae3f3 libwinpr-debuginfo-2.2.0-14.el8_4.1.x86_64.rpm SHA-256: b03341d182ddc19ee3d6f67057c6c66a281e6bc26d4e68d11b6f3f7cb86bc4ce libwinpr-devel-2.2.0-14.el8_4.1.i686.rpm SHA-256: 62aa1d04e28942b0f96b289753753b10367dee87889da35a3a8ae5109aa01bc4 libwinpr-devel-2.2.0-14.el8_4.1.x86_64.rpm SHA-256: b6a33592749e1cf26c360a13e11800a6bf66320126a9b6ef3a52519bc47dd1df The Red Hat security contact is secalert@redhat.com . More contact details at https://access.redhat.com/security/team/contact/ .

Share this article