Monday, April 29, 2024

[USN-6759-1] FreeRDP vulnerabilities

-----BEGIN PGP SIGNATURE-----
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=OCku
-----END PGP SIGNATURE-----
==========================================================================
Ubuntu Security Notice USN-6759-1
April 29, 2024

freerdp3 vulnerabilities
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 24.04 LTS

Summary:

Several security issues were fixed in FreeRDP.

Software Description:
- freerdp3: RDP client for Windows Terminal Services

Details:

It was discovered that FreeRDP incorrectly handled certain memory
operations. If a user were tricked into connecting to a malicious server, a
remote attacker could possibly use this issue to cause FreeRDP to crash,
resulting in a denial of service.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 24.04 LTS
libfreerdp3-3 3.5.1+dfsg1-0ubuntu1

After a standard system update you need to restart your session to make all
the necessary changes.

References:
https://ubuntu.com/security/notices/USN-6759-1
CVE-2024-32658, CVE-2024-32659, CVE-2024-32660, CVE-2024-32661,
CVE-2024-32662

Package Information:
https://launchpad.net/ubuntu/+source/freerdp3/3.5.1+dfsg1-0ubuntu1

No comments:

Post a Comment