Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:7292 - Security Advisory
Issued:
2026-04-09
Updated:
2026-04-09

RHSA-2026:7292 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: freerdp security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for freerdp is now available for Red Hat Enterprise Linux 7 Extended Lifecycle Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. The xfreerdp client can connect to RDP servers such as Microsoft Windows machines, xrdp, and VirtualBox.

Security Fix(es):

  • freerdp: FreeRDP: Arbitrary code execution via heap out-of-bounds write in RLE planar decode path (CVE-2026-26965)
  • freerdp: FreeRDP: Arbitrary code execution via heap buffer overflow in GDI surface pipeline (CVE-2026-26955)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server - Extended Life Cycle Support 7 x86_64
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7 s390x
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7 ppc64
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7 ppc64le

Fixes

  • BZ - 2442959 - CVE-2026-26965 freerdp: FreeRDP: Arbitrary code execution via heap out-of-bounds write in RLE planar decode path
  • BZ - 2443132 - CVE-2026-26955 freerdp: FreeRDP: Arbitrary code execution via heap buffer overflow in GDI surface pipeline

CVEs

  • CVE-2026-26955
  • CVE-2026-26965

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server - Extended Life Cycle Support 7

SRPM
freerdp-2.1.1-5.el7_9.5.src.rpm SHA-256: 776c2703fd7b73579b80c61e1dea2414d72398ee22325ae71ebb03df94df5d05
x86_64
freerdp-2.1.1-5.el7_9.5.x86_64.rpm SHA-256: 1f0eeff0fdbca646b18020c866fb9f6ab129490c71f314f1d0cca15aa32ca0b3
freerdp-debuginfo-2.1.1-5.el7_9.5.i686.rpm SHA-256: 8e9fc0eb612bbdea7ccc503658e755e4aa830300ac5320215954edcf82a613dd
freerdp-debuginfo-2.1.1-5.el7_9.5.i686.rpm SHA-256: 8e9fc0eb612bbdea7ccc503658e755e4aa830300ac5320215954edcf82a613dd
freerdp-debuginfo-2.1.1-5.el7_9.5.x86_64.rpm SHA-256: 4a47fceb6b85cc468445cdf5ec239c5c4ce65728f02a6b65b1fd7a0d8c053600
freerdp-debuginfo-2.1.1-5.el7_9.5.x86_64.rpm SHA-256: 4a47fceb6b85cc468445cdf5ec239c5c4ce65728f02a6b65b1fd7a0d8c053600
freerdp-devel-2.1.1-5.el7_9.5.i686.rpm SHA-256: 1c437ede1e2624860bb72da15b02369926090bfcd7d29db9ad59540bdc7d3ba7
freerdp-devel-2.1.1-5.el7_9.5.x86_64.rpm SHA-256: 281ddb8db752f7dc9b69dc6e680deb96c891eaf3b99f8c70eb7f9adef96bc2ee
freerdp-libs-2.1.1-5.el7_9.5.i686.rpm SHA-256: c8f681550940f1b173fede7f703ea708fcff405a9b9cce9d5b9ec7eb7f7bdf84
freerdp-libs-2.1.1-5.el7_9.5.x86_64.rpm SHA-256: 3b15f2408af714403186b63648c3269d30d35fe601030d6f28fd9159ab4e3d2c
libwinpr-2.1.1-5.el7_9.5.i686.rpm SHA-256: 5c83f7db06fff2599b9ff71e76714a281c6397b2902c63ab1921d16839f26300
libwinpr-2.1.1-5.el7_9.5.x86_64.rpm SHA-256: a0af1640944f51832c7c565c6d3823c8947dc0044184519553befa09de4fc15d
libwinpr-devel-2.1.1-5.el7_9.5.i686.rpm SHA-256: fbeb46c32210e189aa09de29d6712ad93d9398ba2d559061eb27a9084deb7db3
libwinpr-devel-2.1.1-5.el7_9.5.x86_64.rpm SHA-256: ce10c7b88f4a75f4c6398b4eb365a4a3a9469e983f7452cf9609701c17e74090

Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7

SRPM
freerdp-2.1.1-5.el7_9.5.src.rpm SHA-256: 776c2703fd7b73579b80c61e1dea2414d72398ee22325ae71ebb03df94df5d05
s390x
freerdp-2.1.1-5.el7_9.5.s390x.rpm SHA-256: 512e56dcf0eb55a37842661e6e27d28944373e96e220299416902b0a5899a70d
freerdp-debuginfo-2.1.1-5.el7_9.5.s390.rpm SHA-256: a5d78a6f37dddcc8c9b78d1e492603cb6847c1fbcf5e63d3a223d9f75f60a2f0
freerdp-debuginfo-2.1.1-5.el7_9.5.s390.rpm SHA-256: a5d78a6f37dddcc8c9b78d1e492603cb6847c1fbcf5e63d3a223d9f75f60a2f0
freerdp-debuginfo-2.1.1-5.el7_9.5.s390x.rpm SHA-256: f006ebe4dfb681efba996aa3d6c126021bb561d47ba4a144935f12f5fb905a0d
freerdp-debuginfo-2.1.1-5.el7_9.5.s390x.rpm SHA-256: f006ebe4dfb681efba996aa3d6c126021bb561d47ba4a144935f12f5fb905a0d
freerdp-devel-2.1.1-5.el7_9.5.s390.rpm SHA-256: 3e2ca7b956b1759e31b828103cb2b22524be50d34fa29da39f55a131da6c4bbb
freerdp-devel-2.1.1-5.el7_9.5.s390x.rpm SHA-256: d0d80396638efd63de849b2fed5d3ad6fd274c833cdb9fc6b54521217293ba22
freerdp-libs-2.1.1-5.el7_9.5.s390.rpm SHA-256: 3c9cbb8e566db0f1b149f69a5c561bc857ab52402e2e804532ba6db8d74e0d5c
freerdp-libs-2.1.1-5.el7_9.5.s390x.rpm SHA-256: 5f24bc5b82c2b0d6215dca8824d2a93f2158fb3e4cebfbe05a0b8c5732a6f5a1
libwinpr-2.1.1-5.el7_9.5.s390.rpm SHA-256: 6ba665b377c5e77dd7ff9cfaa25d62bf3ebe20fb1e4061b79311c026933d95a4
libwinpr-2.1.1-5.el7_9.5.s390x.rpm SHA-256: bbb67e06cbdd12b82937b91afa316bc23849f68301618c70801ae604dd2c0a0a
libwinpr-devel-2.1.1-5.el7_9.5.s390.rpm SHA-256: 727ad8a65c0d5fda14a10bce24e1ab73d69c8acda17fff08dfaf96356436f154
libwinpr-devel-2.1.1-5.el7_9.5.s390x.rpm SHA-256: 0c2f2a779a241c09a41aa251b9be65b07ab1155346281e12f502cea61051d970

Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7

SRPM
freerdp-2.1.1-5.el7_9.5.src.rpm SHA-256: 776c2703fd7b73579b80c61e1dea2414d72398ee22325ae71ebb03df94df5d05
ppc64
freerdp-2.1.1-5.el7_9.5.ppc64.rpm SHA-256: c57f899272811ae52fd5a2c61f659246b7ffa2a1742a2dc30ab1e54765cc1d4e
freerdp-debuginfo-2.1.1-5.el7_9.5.ppc.rpm SHA-256: 980a2052901b80136daf0ff6ee6fc2c2bdbb741ec2b6c7efdab0cc47e0f1f4e2
freerdp-debuginfo-2.1.1-5.el7_9.5.ppc.rpm SHA-256: 980a2052901b80136daf0ff6ee6fc2c2bdbb741ec2b6c7efdab0cc47e0f1f4e2
freerdp-debuginfo-2.1.1-5.el7_9.5.ppc64.rpm SHA-256: ae03119f4e852feca0e0b1f0c3312187a25fe659187b7f755edf2246eed11845
freerdp-debuginfo-2.1.1-5.el7_9.5.ppc64.rpm SHA-256: ae03119f4e852feca0e0b1f0c3312187a25fe659187b7f755edf2246eed11845
freerdp-devel-2.1.1-5.el7_9.5.ppc.rpm SHA-256: 384f66454fa9dc77e67ba36feb42d3979189d823faa08852af7aa5fa59a1f210
freerdp-devel-2.1.1-5.el7_9.5.ppc64.rpm SHA-256: e3a04857b0d96d3bc150425556351b261d9ebdecc04d80c29007e1440c3439dd
freerdp-libs-2.1.1-5.el7_9.5.ppc.rpm SHA-256: f01ce4f08628a67d3d575806151898b6b764377612a2ea1aec309bce11969fa4
freerdp-libs-2.1.1-5.el7_9.5.ppc64.rpm SHA-256: 91b5f0412fa7c7e06a6a253df117145db9ffc990225e713926901a18b7cbefa8
libwinpr-2.1.1-5.el7_9.5.ppc.rpm SHA-256: addbf2fddc5ed59e723a0b335a807b82877d78df859d44b3bf7385064e1cfe75
libwinpr-2.1.1-5.el7_9.5.ppc64.rpm SHA-256: e4424399b99df5d915c7c969ef3e2ad9c6e1ca3831bb18af23b089466c86e3ba
libwinpr-devel-2.1.1-5.el7_9.5.ppc.rpm SHA-256: 9676865ff6d70d4836702d6d3069db5eec68b57dec557efd1af2ec7c668eecb3
libwinpr-devel-2.1.1-5.el7_9.5.ppc64.rpm SHA-256: 83d2e133c3fcbcd9f605d8e7b191d2ab252aa4e56a8267f339c3d3ccef7d54f1

Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7

SRPM
freerdp-2.1.1-5.el7_9.5.src.rpm SHA-256: 776c2703fd7b73579b80c61e1dea2414d72398ee22325ae71ebb03df94df5d05
ppc64le
freerdp-2.1.1-5.el7_9.5.ppc64le.rpm SHA-256: 0711d9c7c8e98b8d090765440528fbf3a7fa8f86cf8d4d569244c3f33ccff6ff
freerdp-debuginfo-2.1.1-5.el7_9.5.ppc64le.rpm SHA-256: b76b461ccb174fcca23f2a7920a2f6c3942da2e5da4ff3b8b5976f3467841c01
freerdp-debuginfo-2.1.1-5.el7_9.5.ppc64le.rpm SHA-256: b76b461ccb174fcca23f2a7920a2f6c3942da2e5da4ff3b8b5976f3467841c01
freerdp-devel-2.1.1-5.el7_9.5.ppc64le.rpm SHA-256: 695552d7ac51a119444e884bc6dd900d8370168dfe0a36a9995438f23e0832dd
freerdp-libs-2.1.1-5.el7_9.5.ppc64le.rpm SHA-256: 770c0dcdfd98eadd50e2c80909aeb96bdf75c825d00d6736c4009b9cd425623d
libwinpr-2.1.1-5.el7_9.5.ppc64le.rpm SHA-256: 6350c0f3f91a1fa7c31be731a311777d6aedbcf599651f44059093b72e79f3f2
libwinpr-devel-2.1.1-5.el7_9.5.ppc64le.rpm SHA-256: b9f301f7328f8983849f3e382cb02f97b50961682a87565361c29e4083483d7a

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility