Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:6799 - Security Advisory
Issued:
2026-04-07
Updated:
2026-04-07

RHSA-2026:6799 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: freerdp security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for freerdp is now available for Red Hat Enterprise Linux 10.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. The xfreerdp client can connect to RDP servers such as Microsoft Windows machines, xrdp, and VirtualBox.

Security Fix(es):

  • freerdp: FreeRDP heap-use-after-free (CVE-2026-22856)
  • freerdp: FreeRDP heap-buffer-overflow (CVE-2026-22854)
  • freerdp: FreeRDP heap-buffer-overflow (CVE-2026-22852)
  • freerdp: FreeRDP: Denial of Service via FastGlyph parsing buffer overflow (CVE-2026-23732)
  • freerdp: FreeRDP: Denial of Service via use-after-free in AUDIN format renegotiation (CVE-2026-24676)
  • freerdp: FreeRDP has a heap-use-after-free in video_timer (CVE-2026-24491)
  • freerdp: FreeRDP has a NULL Pointer Dereference in rdp_write_logon_info_v2() (CVE-2026-23948)
  • freerdp: FreeRDP has a Heap-use-after-free in play_thread (CVE-2026-24684)
  • freerdp: FreeRDP has a heap-use-after-free in urb_bulk_transfer_cb (CVE-2026-24681)
  • freerdp: FreeRDP has a Heap-buffer-overflow in audio_formats_free (CVE-2026-24682)
  • freerdp: FreeRDP has a heap-use-after-free in ainput_send_input_event (CVE-2026-24683)
  • freerdp: FreeRDP has a heap-buffer-overflow in urb_select_interface (CVE-2026-24679)
  • freerdp: FreeRDP has a Heap-use-after-free in urb_select_interface (CVE-2026-24675)
  • freerdp: FreeRDP: Arbitrary code execution via crafted Remote Desktop Protocol (RDP) server messages (CVE-2026-31806)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 10 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 10 s390x
  • Red Hat Enterprise Linux for Power, little endian 10 ppc64le
  • Red Hat Enterprise Linux for ARM 64 10 aarch64
  • Red Hat CodeReady Linux Builder for x86_64 10 x86_64
  • Red Hat CodeReady Linux Builder for Power, little endian 10 ppc64le
  • Red Hat CodeReady Linux Builder for ARM 64 10 aarch64
  • Red Hat CodeReady Linux Builder for IBM z Systems 10 s390x

Fixes

  • BZ - 2429650 - CVE-2026-22856 freerdp: FreeRDP heap-use-after-free
  • BZ - 2429652 - CVE-2026-22854 freerdp: FreeRDP heap-buffer-overflow
  • BZ - 2429654 - CVE-2026-22852 freerdp: FreeRDP heap-buffer-overflow
  • BZ - 2430881 - CVE-2026-23732 freerdp: FreeRDP: Denial of Service via FastGlyph parsing buffer overflow
  • BZ - 2438201 - CVE-2026-24676 freerdp: FreeRDP: Denial of Service via use-after-free in AUDIN format renegotiation
  • BZ - 2438202 - CVE-2026-24491 freerdp: FreeRDP has a heap-use-after-free in video_timer
  • BZ - 2438207 - CVE-2026-23948 freerdp: FreeRDP has a NULL Pointer Dereference in rdp_write_logon_info_v2()
  • BZ - 2438208 - CVE-2026-24684 freerdp: FreeRDP has a Heap-use-after-free in play_thread
  • BZ - 2438210 - CVE-2026-24681 freerdp: FreeRDP has a heap-use-after-free in urb_bulk_transfer_cb
  • BZ - 2438212 - CVE-2026-24682 freerdp: FreeRDP has a Heap-buffer-overflow in audio_formats_free
  • BZ - 2438216 - CVE-2026-24683 freerdp: FreeRDP has a heap-use-after-free in ainput_send_input_event
  • BZ - 2438217 - CVE-2026-24679 freerdp: FreeRDP has a heap-buffer-overflow in urb_select_interface
  • BZ - 2438221 - CVE-2026-24675 freerdp: FreeRDP has a Heap-use-after-free in urb_select_interface
  • BZ - 2447376 - CVE-2026-31806 freerdp: FreeRDP: Arbitrary code execution via crafted Remote Desktop Protocol (RDP) server messages

CVEs

  • CVE-2026-22852
  • CVE-2026-22854
  • CVE-2026-22856
  • CVE-2026-23732
  • CVE-2026-23948
  • CVE-2026-24491
  • CVE-2026-24675
  • CVE-2026-24676
  • CVE-2026-24679
  • CVE-2026-24681
  • CVE-2026-24682
  • CVE-2026-24683
  • CVE-2026-24684
  • CVE-2026-31806

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 10

SRPM
freerdp-3.10.3-5.el10_1.5.src.rpm SHA-256: b4217236e5a321e52651a89b1afdd0b82532ecfed7885c2dda01cde2fc2b3b0e
x86_64
freerdp-3.10.3-5.el10_1.5.x86_64.rpm SHA-256: 1ccd3576b1749a544777753bd34c2a1448735b0ea4795acf08fdb03deeba07b2
freerdp-debuginfo-3.10.3-5.el10_1.5.x86_64.rpm SHA-256: 68c3f56d67812880880d308bcb92b57b01306ffe2570858de58b73fd6c619131
freerdp-debugsource-3.10.3-5.el10_1.5.x86_64.rpm SHA-256: 4c7f7c98af93ec0d669b6a69866b5cf876d49c9b5481d870878839400a138f1e
freerdp-libs-3.10.3-5.el10_1.5.x86_64.rpm SHA-256: 667d26f183acbe82701ae36eb47a1fc524f767ca1e903156918f51fe9e22078a
freerdp-libs-debuginfo-3.10.3-5.el10_1.5.x86_64.rpm SHA-256: 50e5846f880286ed499deecf49d47d7452f1c6c2ba223a7aea23736c57f32155
freerdp-server-debuginfo-3.10.3-5.el10_1.5.x86_64.rpm SHA-256: 487bc5251fbf1cc229d843632860b48651ab9b6db1c50f75c9f5ea311bc2a1d9
libwinpr-3.10.3-5.el10_1.5.x86_64.rpm SHA-256: 3b1da9686ded6c6911fef9565c657bd76072b7e9b4ee36727124c5b50b336217
libwinpr-debuginfo-3.10.3-5.el10_1.5.x86_64.rpm SHA-256: 9f2a122b6d8b42f67d9a89126a13af61e68055a6a897f2745bbea62b3eb7b1ad

Red Hat Enterprise Linux for IBM z Systems 10

SRPM
freerdp-3.10.3-5.el10_1.5.src.rpm SHA-256: b4217236e5a321e52651a89b1afdd0b82532ecfed7885c2dda01cde2fc2b3b0e
s390x
freerdp-3.10.3-5.el10_1.5.s390x.rpm SHA-256: 6e16e002919114fdaed75320087c05a03d1ee25d310e18b530fbf3485f040278
freerdp-debuginfo-3.10.3-5.el10_1.5.s390x.rpm SHA-256: ae392114f7a1d685dfd6b1e682112faf9b7f3961643df1287244ce8b52c27a34
freerdp-debugsource-3.10.3-5.el10_1.5.s390x.rpm SHA-256: be4733d0ff52585e9e2ea2d9e5bd273b4f2db243c4c0cdd3ed743ef4ca000eea
freerdp-libs-3.10.3-5.el10_1.5.s390x.rpm SHA-256: e88f6e03f32015099d85a27f0041f01f095698b462a782afde9f8e563a245558
freerdp-libs-debuginfo-3.10.3-5.el10_1.5.s390x.rpm SHA-256: 2a24d1d0493ff0b557f999243bc4966a0ce33b4cfc5c97cbceb584df179ca565
freerdp-server-debuginfo-3.10.3-5.el10_1.5.s390x.rpm SHA-256: 60e83eaac74f31d4d3c79634bbc72978032108ce0c219fabeb33bb14e7bc16ac
libwinpr-3.10.3-5.el10_1.5.s390x.rpm SHA-256: 13048aa0697bfe5d88c149cf093d0d70b448b00a2c409ad537750e012d25db27
libwinpr-debuginfo-3.10.3-5.el10_1.5.s390x.rpm SHA-256: 4d937f6768bf56e95b65bf6423bb4d8ecb2ecf21351495f2540d6ae9d5df47f6

Red Hat Enterprise Linux for Power, little endian 10

SRPM
freerdp-3.10.3-5.el10_1.5.src.rpm SHA-256: b4217236e5a321e52651a89b1afdd0b82532ecfed7885c2dda01cde2fc2b3b0e
ppc64le
freerdp-3.10.3-5.el10_1.5.ppc64le.rpm SHA-256: 345a3ea8f3913e7ec67b34df20f78e046eae722da8a4d88133a0f6cfcec76936
freerdp-debuginfo-3.10.3-5.el10_1.5.ppc64le.rpm SHA-256: 17db5c63e19aa76fdc6fa4cf966794f81a1eb91b1e33075a85ee05f6cb7497a1
freerdp-debugsource-3.10.3-5.el10_1.5.ppc64le.rpm SHA-256: 2e7ef1bdbad0e0ec7eed5593c099f47849f33a306935fac28a1112758143c52f
freerdp-libs-3.10.3-5.el10_1.5.ppc64le.rpm SHA-256: 351ff40c73c12febf6ff39e5a67f7366d2e0fc6adcefaa07034cc8777c840bda
freerdp-libs-debuginfo-3.10.3-5.el10_1.5.ppc64le.rpm SHA-256: 29e9090d803dc046a19db529f05a8093b18eefd6df482b740e6cb028b5f5e2ea
freerdp-server-debuginfo-3.10.3-5.el10_1.5.ppc64le.rpm SHA-256: f8149a8fbd42919ed2a6012844bf3c6a140c6df1ba1c19e0f6ea69f246afb8b1
libwinpr-3.10.3-5.el10_1.5.ppc64le.rpm SHA-256: 71bb8936bc32dbd545148f8a1e4454f4e5b5d1a64b83e4f791399043e5ccef10
libwinpr-debuginfo-3.10.3-5.el10_1.5.ppc64le.rpm SHA-256: 6f1e67efe6e0c8c34113fb432ddd67e693be1f8f23539b38b05cec364502c3f0

Red Hat Enterprise Linux for ARM 64 10

SRPM
freerdp-3.10.3-5.el10_1.5.src.rpm SHA-256: b4217236e5a321e52651a89b1afdd0b82532ecfed7885c2dda01cde2fc2b3b0e
aarch64
freerdp-3.10.3-5.el10_1.5.aarch64.rpm SHA-256: 586b9f0c3677d1f51479c1f8e77133e85b254a4921668dede325ba68250c7ef7
freerdp-debuginfo-3.10.3-5.el10_1.5.aarch64.rpm SHA-256: 8f105f2dd21b4eee21266ef6cf7522d6bc7cf6e8e092865b11a0e0545d85febd
freerdp-debugsource-3.10.3-5.el10_1.5.aarch64.rpm SHA-256: c68027b6e062bd481f21c305c0c88a0359b8aa56edf7d0886ea6d3c00a3439e5
freerdp-libs-3.10.3-5.el10_1.5.aarch64.rpm SHA-256: 5a84404f71f27dc5b5505ca2f189b2763fb0606c31cb860591a10add5e43803c
freerdp-libs-debuginfo-3.10.3-5.el10_1.5.aarch64.rpm SHA-256: 9b8253176c128f012a30f25252ffacc9b4c1caff33104eb1d5130ed1be764f6f
freerdp-server-debuginfo-3.10.3-5.el10_1.5.aarch64.rpm SHA-256: 344b8693f0f98aa55146259d93d720b51194b8dc18fdd3735b0cb94f081774e1
libwinpr-3.10.3-5.el10_1.5.aarch64.rpm SHA-256: fb5d1a4fd3cd091788577f09f7916a798ed7f6b01653976adcec63cdc7df8b07
libwinpr-debuginfo-3.10.3-5.el10_1.5.aarch64.rpm SHA-256: a1ad5765ee689932317b37dd7d5933351dc39f3111d864fc2fe461abd6aea04a

Red Hat CodeReady Linux Builder for x86_64 10

SRPM
x86_64
freerdp-debuginfo-3.10.3-5.el10_1.5.x86_64.rpm SHA-256: 68c3f56d67812880880d308bcb92b57b01306ffe2570858de58b73fd6c619131
freerdp-debugsource-3.10.3-5.el10_1.5.x86_64.rpm SHA-256: 4c7f7c98af93ec0d669b6a69866b5cf876d49c9b5481d870878839400a138f1e
freerdp-devel-3.10.3-5.el10_1.5.x86_64.rpm SHA-256: 9a7361f704e1d55342b8ada8ddfc47b0c6b846916e168effd95c467a595e94ab
freerdp-libs-debuginfo-3.10.3-5.el10_1.5.x86_64.rpm SHA-256: 50e5846f880286ed499deecf49d47d7452f1c6c2ba223a7aea23736c57f32155
freerdp-server-3.10.3-5.el10_1.5.x86_64.rpm SHA-256: 10695358e8790955d31e5a452047a7d2cbd1bc0cf4632c09231f44a1aac899f7
freerdp-server-debuginfo-3.10.3-5.el10_1.5.x86_64.rpm SHA-256: 487bc5251fbf1cc229d843632860b48651ab9b6db1c50f75c9f5ea311bc2a1d9
libwinpr-debuginfo-3.10.3-5.el10_1.5.x86_64.rpm SHA-256: 9f2a122b6d8b42f67d9a89126a13af61e68055a6a897f2745bbea62b3eb7b1ad
libwinpr-devel-3.10.3-5.el10_1.5.x86_64.rpm SHA-256: cfd7ebbbf362586ce22124e4fe8194c779656c8fb9d54db832dfe04fc60e397a

Red Hat CodeReady Linux Builder for Power, little endian 10

SRPM
ppc64le
freerdp-debuginfo-3.10.3-5.el10_1.5.ppc64le.rpm SHA-256: 17db5c63e19aa76fdc6fa4cf966794f81a1eb91b1e33075a85ee05f6cb7497a1
freerdp-debugsource-3.10.3-5.el10_1.5.ppc64le.rpm SHA-256: 2e7ef1bdbad0e0ec7eed5593c099f47849f33a306935fac28a1112758143c52f
freerdp-devel-3.10.3-5.el10_1.5.ppc64le.rpm SHA-256: 1270b950251a11bd0b5a809265a5822fa016e335b24b0d8221ed82e765e3b57e
freerdp-libs-debuginfo-3.10.3-5.el10_1.5.ppc64le.rpm SHA-256: 29e9090d803dc046a19db529f05a8093b18eefd6df482b740e6cb028b5f5e2ea
freerdp-server-3.10.3-5.el10_1.5.ppc64le.rpm SHA-256: 7aea0444bed66e2fc750215c71aee6db1ba7c3b8ec48d2d20daf753903996862
freerdp-server-debuginfo-3.10.3-5.el10_1.5.ppc64le.rpm SHA-256: f8149a8fbd42919ed2a6012844bf3c6a140c6df1ba1c19e0f6ea69f246afb8b1
libwinpr-debuginfo-3.10.3-5.el10_1.5.ppc64le.rpm SHA-256: 6f1e67efe6e0c8c34113fb432ddd67e693be1f8f23539b38b05cec364502c3f0
libwinpr-devel-3.10.3-5.el10_1.5.ppc64le.rpm SHA-256: e4040e2d81e7cd18cccac0c45c6d18c83ce59b014c9c28b90a3695d375bf731f

Red Hat CodeReady Linux Builder for ARM 64 10

SRPM
aarch64
freerdp-debuginfo-3.10.3-5.el10_1.5.aarch64.rpm SHA-256: 8f105f2dd21b4eee21266ef6cf7522d6bc7cf6e8e092865b11a0e0545d85febd
freerdp-debugsource-3.10.3-5.el10_1.5.aarch64.rpm SHA-256: c68027b6e062bd481f21c305c0c88a0359b8aa56edf7d0886ea6d3c00a3439e5
freerdp-devel-3.10.3-5.el10_1.5.aarch64.rpm SHA-256: ade30e3f740112948fa969f86c1b92576b434644d91207b868107b4c6ad11614
freerdp-libs-debuginfo-3.10.3-5.el10_1.5.aarch64.rpm SHA-256: 9b8253176c128f012a30f25252ffacc9b4c1caff33104eb1d5130ed1be764f6f
freerdp-server-3.10.3-5.el10_1.5.aarch64.rpm SHA-256: feb2cdaab2f398ec537138daa910c4d6222610af95a97c9253cd145c1e6afad5
freerdp-server-debuginfo-3.10.3-5.el10_1.5.aarch64.rpm SHA-256: 344b8693f0f98aa55146259d93d720b51194b8dc18fdd3735b0cb94f081774e1
libwinpr-debuginfo-3.10.3-5.el10_1.5.aarch64.rpm SHA-256: a1ad5765ee689932317b37dd7d5933351dc39f3111d864fc2fe461abd6aea04a
libwinpr-devel-3.10.3-5.el10_1.5.aarch64.rpm SHA-256: 2419f73ce547806530f425240313f30319cccabc76cc7b0ec31efacd33a256f0

Red Hat CodeReady Linux Builder for IBM z Systems 10

SRPM
s390x
freerdp-debuginfo-3.10.3-5.el10_1.5.s390x.rpm SHA-256: ae392114f7a1d685dfd6b1e682112faf9b7f3961643df1287244ce8b52c27a34
freerdp-debugsource-3.10.3-5.el10_1.5.s390x.rpm SHA-256: be4733d0ff52585e9e2ea2d9e5bd273b4f2db243c4c0cdd3ed743ef4ca000eea
freerdp-devel-3.10.3-5.el10_1.5.s390x.rpm SHA-256: 87b89273e68c1ce9231baeb9cfc3043a5e371fb9503a44037e72cef0b5408dc1
freerdp-libs-debuginfo-3.10.3-5.el10_1.5.s390x.rpm SHA-256: 2a24d1d0493ff0b557f999243bc4966a0ce33b4cfc5c97cbceb584df179ca565
freerdp-server-3.10.3-5.el10_1.5.s390x.rpm SHA-256: 3363e9cb87a57922a91665f99145ac935a2dd4b2d3b5e52b251645630d9ab2ab
freerdp-server-debuginfo-3.10.3-5.el10_1.5.s390x.rpm SHA-256: 60e83eaac74f31d4d3c79634bbc72978032108ce0c219fabeb33bb14e7bc16ac
libwinpr-debuginfo-3.10.3-5.el10_1.5.s390x.rpm SHA-256: 4d937f6768bf56e95b65bf6423bb4d8ecb2ecf21351495f2540d6ae9d5df47f6
libwinpr-devel-3.10.3-5.el10_1.5.s390x.rpm SHA-256: 44360dbaa21a1c22e111b60c3dd7b42f692986508b249109a57c70c9b10ed867

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility