Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 498
Alerts This Week
Warning Icon 1 498

Oracle Linux 10 freerdp Important Security Issue ELSA-2026-36203

oracle
Calendar Grey July 22, 2026
Scroller Oracle
Freerdp security advisory for Oracle Linux 10, addressing multiple CVEs with important package updates available.
Oracle Linux 10 has released updates for freerdp addressing multiple CVEs, including significant security fixes to mitigate vulnerabilities associated with memory management and da...

Summary

[2:3.10.3-12.6] - Backport several CVE fixes (CVE-2026-40033, CVE-2026-44420, CVE-2026-44421, CVE-2026-44422, CVE-2026-45700) Resolves: RHEL-186978, RHEL-186967, RHEL-186958, RHEL-186950, RHEL-186093 [2:3.10.3-12.5] - Lock appWindow to fix use-after-free in RAIL mode (CVE-2026-25952) Resolves: RHEL-159848 [2:3.10.3-12.4] - Fix double free in xf_rail_window_common cleanup (CVE-2026-26986) - Fix clipboard use-after-free during auto-reconnect (CVE-2026-25997) - Fix heap-buffer-overflow in bitmap_cache_put (CVE-2026-29775) - Add DSP format checks (CVE-2026-31884) - Fix DSP array bounds checks (CVE-2026-31883) - Fix DSP array bounds checks (CVE-2026-31885) - Update PERSISTENT_CACHE_ENTRY::size after realloc (CVE-2026-33987) - Update CLEAR_GLYPH_ENTRY::count after alloc (CVE-2026-33985) - Use winpr_aligned_calloc in persistent cache (CVE-2026-33982) Resolves: RHEL-159804, RHEL-159660, RHEL-161034, RHEL-161469 Resolves: RHEL-161505, RHEL-161072, RHEL-163654, RHEL-168462, RHEL-...

Read the Full Advisory

SRPMs

http://oss.oracle.com/ol10/SRPMS-updates/freerdp-3.10.3-12.el10_2.6.src.rpm

x86_64

freerdp-3.10.3-12.el10_2.6.x86_64.rpm freerdp-devel-3.10.3-12.el10_2.6.x86_64.rpm freerdp-libs-3.10.3-12.el10_2.6.x86_64.rpm freerdp-server-3.10.3-12.el10_2.6.x86_64.rpm libwinpr-3.10.3-12.el10_2.6.x86_64.rpm libwinpr-devel-3.10.3-12.el10_2.6.x86_64.rpm

aarch64

freerdp-3.10.3-12.el10_2.6.aarch64.rpm freerdp-devel-3.10.3-12.el10_2.6.aarch64.rpm freerdp-libs-3.10.3-12.el10_2.6.aarch64.rpm freerdp-server-3.10.3-12.el10_2.6.aarch64.rpm libwinpr-3.10.3-12.el10_2.6.aarch64.rpm libwinpr-devel-3.10.3-12.el10_2.6.aarch64.rpm

Severity
important
Lowest
Low
Medium
High
Critical

Related CVEs: CVE-2026-40033 CVE-2026-44420 CVE-2026-44421 CVE-2026-44422 CVE-2026-45700

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.