Explore top 10 tips to secure your open-source projects now. Read More

×
Alerts This Week
Warning Icon 1 615
Alerts This Week
Warning Icon 1 615

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 68 articles for you...
89

Fedora 43 freerdp Important Update Notification 2026-fa672d26a8

Update to 3.30.0 Update to 3.29.0. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-fa672d26a8 2026-07-21 01:13:08.976727+00:00 -------------------------------------------------------------------------------- Name : freerdp Product : Fedora 43 Version : 3.30.0 Release : 1.fc43 URL : http://www.freerdp.com/ Summary : Free implementation of the Remote Desktop Protocol (RDP) Description : The xfreerdp & wlfreerdp Remote Desktop Protocol (RDP) clients from the FreeRDP project. xfreerdp & wlfreerdp can connect to RDP servers such as Microsoft Windows machines, xrdp and VirtualBox. -------------------------------------------------------------------------------- Update Information: Update to 3.30.0 Update to 3.29.0 -------------------------------------------------------------------------------- ChangeLog: * Thu Jul 16 2026 Ondrej Holy - 2:3.30.0-1 - Update to 3.30.0 Resolves: rhbz#2501274 * Wed Jul 15 2026 Fedora Release Engineering - 2:3.29.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_45_Mass_Rebuild * Wed Jul 15 2026 Ondrej Holy - 2:3.29.0-1 - Update to 3.29.0 Resolves: rhbz#2499994 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2499994 - freerdp-3.29.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2499994 [ 2 ] Bug #2501274 - freerdp-3.30.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2501274 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-fa672d26a8' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used bythe Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new . Security advisory for Fedora 43 updating freerdp to versions 3.30.0 and 3.29.0, addressing critical issues and enhancements.. freerdp update, Fedora 43, remote desktop protocol, RDP clients, software update. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 20, 2026 Important Fedora
89

Fedora 43 xrdp Urgent Security Update Notice FEDORA-2026-bd0a75766f

Release notes for xrdp v0.10.6.1 (2026/07/06) General announcements This release fixes 10 vulnerabilities and 1 regression introduced by a vulnerability fix in the previous release. If you like xrdp, please consider sponsoring or donating to the project. We. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-bd0a75766f 2026-07-16 01:28:35.510767+00:00 -------------------------------------------------------------------------------- Name : xrdp Product : Fedora 43 Version : 0.10.6.1 Release : 1.fc43 URL : http://www.xrdp.org/ Summary : Open source remote desktop protocol (RDP) server Description : xrdp provides a fully functional RDP server compatible with a wide range of RDP clients, including FreeRDP and Microsoft RDP client. -------------------------------------------------------------------------------- Update Information: Release notes for xrdp v0.10.6.1 (2026/07/06) General announcements This release fixes 10 vulnerabilities and 1 regression introduced by a vulnerability fix in the previous release. If you like xrdp, please consider sponsoring or donating to the project. We accept financial contributions through Open Collective, and direct donations to individual developers via GitHub Sponsors are also welcome. Security fixes CVE-2026-41252 CVE-2026-41521 CVE-2026-44178 CVE-2026-42218 CVE-2026-44978 CVE-2026-54538 CVE-2026-55238 CVE-2026-55626 CVE-2026-55639 CVE-2026-55645 New features None Bug fixes regression: Fix SEGV in xrdp when running over TLS (#3793) -------------------------------------------------------------------------------- ChangeLog: * Tue Jul 7 2026 Bojan Smojver - 1:0.10.6.1-1 - Update to 0.10.6.1 - CVE-2026-41252, CVE-2026-41521, CVE-2026-44178, CVE-2026-42218 - CVE-2026-44978, CVE-2026-54538, CVE-2026-55238, CVE-2026-55626 - CVE-2026-55639, CVE-2026-55645 * Sat Jun 13 2026 Yaakov Selkowitz - 1:0.10.6-3 - Rebuilt for openssl4.0 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-bd0a75766f' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new . xrdp version 0.10.6.1 for Fedora 43 addresses 10 critical issues and a regression affecting security. Update recommended.. xrdp remote desktop Fedora fix updates. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jul 15, 2026 Critical Fedora
89

Fedora 43 freerdp Critical Remote Desktop Exploits Fixed 2026-78a12ffec8

Update to 3.27.1 It fixes CVE-2026-55191, CVE-2026-55192, CVE-2026-55193, CVE-2026-55194, CVE-2026-55648 and CVE-2026-55827.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-78a12ffec8 2026-07-04 01:06:18.979228+00:00 -------------------------------------------------------------------------------- Name : freerdp Product : Fedora 43 Version : 3.27.1 Release : 1.fc43 URL : http://www.freerdp.com/ Summary : Free implementation of the Remote Desktop Protocol (RDP) Description : The xfreerdp & wlfreerdp Remote Desktop Protocol (RDP) clients from the FreeRDP project. xfreerdp & wlfreerdp can connect to RDP servers such as Microsoft Windows machines, xrdp and VirtualBox. -------------------------------------------------------------------------------- Update Information: Update to 3.27.1 It fixes CVE-2026-55191, CVE-2026-55192, CVE-2026-55193, CVE-2026-55194, CVE-2026-55648 and CVE-2026-55827. -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 18 2026 Ondrej Holy - 2:3.27.1-1 - Update to 3.27.1 (CVE-2026-55191, CVE-2026-55192, CVE-2026-55193, CVE-2026-55194, CVE-2026-55648, CVE-2026-55827) Resolves: rhbz#2488900 * Fri Jun 12 2026 Yaakov Selkowitz - 2:3.26.0-8 - Rebuilt for openssl 4.0 * Mon Jun 8 2026 František Zatloukal - 2:3.26.0-7 - Rebuilt for icu 78.3 * Thu Jun 4 2026 Ondrej Holy - 2:3.26.0-6 - Enable uriparser support on RHEL * Tue May 26 2026 Yaakov Selkowitz - 2:3.26.0-5 - Drop multilib-rpm-config usage on RHEL -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-78a12ffec8' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More detailson the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- . Critical updates for FreeRDP address multiple exploits, ensuring Fedora 43 users are secured against potential threats.. Fedora security patch, FreeRDP update, remote desktop vulnerability, Fedora 43 security. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jul 03, 2026 Critical Fedora
89

Fedora 44 FreeRDP Essential CVE Fixes for Various Security Threats

Update to 3.27.1 It fixes CVE-2026-55191, CVE-2026-55192, CVE-2026-55193, CVE-2026-55194, CVE-2026-55648 and CVE-2026-55827.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-9c6082d92d 2026-06-22 00:50:54.985280+00:00 -------------------------------------------------------------------------------- Name : freerdp Product : Fedora 44 Version : 3.27.1 Release : 1.fc44 URL : http://www.freerdp.com/ Summary : Free implementation of the Remote Desktop Protocol (RDP) Description : The xfreerdp & wlfreerdp Remote Desktop Protocol (RDP) clients from the FreeRDP project. xfreerdp & wlfreerdp can connect to RDP servers such as Microsoft Windows machines, xrdp and VirtualBox. -------------------------------------------------------------------------------- Update Information: Update to 3.27.1 It fixes CVE-2026-55191, CVE-2026-55192, CVE-2026-55193, CVE-2026-55194, CVE-2026-55648 and CVE-2026-55827. -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 18 2026 Ondrej Holy - 2:3.27.1-1 - Update to 3.27.1 (CVE-2026-55191, CVE-2026-55192, CVE-2026-55193, CVE-2026-55194, CVE-2026-55648, CVE-2026-55827) Resolves: rhbz#2488900 * Fri Jun 12 2026 Yaakov Selkowitz - 2:3.26.0-8 - Rebuilt for openssl 4.0 * Mon Jun 8 2026 František Zatloukal - 2:3.26.0-7 - Rebuilt for icu 78.3 * Thu Jun 4 2026 Ondrej Holy - 2:3.26.0-6 - Enable uriparser support on RHEL * Tue May 26 2026 Yaakov Selkowitz - 2:3.26.0-5 - Drop multilib-rpm-config usage on RHEL -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-9c6082d92d' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More detailson the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- . Critical updates for Fedora 44 FreeRDP addressing multiple CVEs. Ensure your system security with the latest patches.. Fedora security updates, FreeRDP patch, Fedora CVE fixes, Remote Desktop Protocol security. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jun 21, 2026 Important Fedora
89

Fedora 43 xrdp Important TCP Socket Configuration Update 2026-8aeca78af9

Close TCP socket in default configuration, because we want just Unix domain socket connections to Xvnc.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-8aeca78af9 2026-05-30 01:07:34.273962+00:00 -------------------------------------------------------------------------------- Name : xrdp Product : Fedora 43 Version : 0.10.6 Release : 2.fc43 URL : http://www.xrdp.org/ Summary : Open source remote desktop protocol (RDP) server Description : xrdp provides a fully functional RDP server compatible with a wide range of RDP clients, including FreeRDP and Microsoft RDP client. -------------------------------------------------------------------------------- Update Information: Close TCP socket in default configuration, because we want just Unix domain socket connections to Xvnc. -------------------------------------------------------------------------------- ChangeLog: * Fri May 22 2026 Bojan Smojver - 1:0.10.6-2 - close TCP port in default Xvnc config, Unix domain socket only -------------------------------------------------------------------------------- References: [ 1 ] Bug #2480423 - no authentication required to connect to Xvnc https://bugzilla.redhat.com/show_bug.cgi?id=2480423 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-8aeca78af9' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list-- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new . Close TCP socket in Fedora 43 xrdp default config to improve security for Unix domain connections.. xrdp Fedora 43 RDP remote desktop protocol. . Severity: Important. LinuxSecurity.com Team

Calendar%202 May 30, 2026 Important Fedora
89

Fedora 44 xrdp Critical Socket Closure Advisory 2026-9a3a98bc24

Close TCP socket in default configuration, because we want just Unix domain socket connections to Xvnc.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-9a3a98bc24 2026-05-30 00:54:46.011421+00:00 -------------------------------------------------------------------------------- Name : xrdp Product : Fedora 44 Version : 0.10.6 Release : 2.fc44 URL : http://www.xrdp.org/ Summary : Open source remote desktop protocol (RDP) server Description : xrdp provides a fully functional RDP server compatible with a wide range of RDP clients, including FreeRDP and Microsoft RDP client. -------------------------------------------------------------------------------- Update Information: Close TCP socket in default configuration, because we want just Unix domain socket connections to Xvnc. -------------------------------------------------------------------------------- ChangeLog: * Fri May 22 2026 Bojan Smojver - 1:0.10.6-2 - close TCP port in default Xvnc config, Unix domain socket only -------------------------------------------------------------------------------- References: [ 1 ] Bug #2480423 - no authentication required to connect to Xvnc https://bugzilla.redhat.com/show_bug.cgi?id=2480423 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-9a3a98bc24' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list-- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new . Critical xrdp update for Fedora 44 closes TCP socket for secure Unix domain connections to Xvnc.. xrdp update remote desktop protocol Fedora 44 configuration. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 May 30, 2026 Critical Fedora
89

Fedora 43 freerdp Update 3.26.0 WebAuthN Support 2026-dfde5fc92a

Update to 3.26.0. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-dfde5fc92a 2026-05-15 03:06:23.642321+00:00 -------------------------------------------------------------------------------- Name : freerdp Product : Fedora 43 Version : 3.26.0 Release : 4.fc43 URL : http://www.freerdp.com/ Summary : Free implementation of the Remote Desktop Protocol (RDP) Description : The xfreerdp & wlfreerdp Remote Desktop Protocol (RDP) clients from the FreeRDP project. xfreerdp & wlfreerdp can connect to RDP servers such as Microsoft Windows machines, xrdp and VirtualBox. -------------------------------------------------------------------------------- Update Information: Update to 3.26.0 -------------------------------------------------------------------------------- ChangeLog: * Sun May 10 2026 Neal Gompa - 2:3.26.0-4 - Enable WebAuthN/FIDO2 passthrough support * Sun May 10 2026 Shawn W Dunn - 2:3.26.0-3 - Drop 0001-add-sso-mib-dependency-to-client-cmake.patch * Sun May 10 2026 Shawn W Dunn - 2:3.26.0-2 - Add 0001-add-sso-mib-dependency-to-client-cmake.patch * Thu May 7 2026 Ondrej Holy - 2:3.26.0-1 - Update to 3.26.0 Resolves: rhbz#2467244 * Tue Apr 28 2026 Yaakov Selkowitz - 2:3.25.0-2 - Disable AOM AV1 support on RHEL * Thu Apr 23 2026 Neal Gompa - 2:3.25.0-1 - Update to 3.25.0 (CVE-2026-40254) Resolves: rhbz#2461094 - Enable AV1 support * Sat Apr 4 2026 Luca Boccassi - 2:3.24.2-2 - Build with sso-mib support -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-dfde5fc92a' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPGkeys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new . Update for Fedora 43 freerdp brings enhancements including WebAuthN support and fixes. Essential for remote desktop users.. Fedora freerdp update remote desktop protocol security. . Severity: Important. LinuxSecurity.com Team

Calendar%202 May 15, 2026 Important Fedora
89

Fedora 43 xrdp Important Remote Code Exec DoS Vulnern 2026-9417ff0bc5

Security fixes CVE-2026-32105 CVE-2026-32107 CVE-2026-32623 CVE-2026-32624. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-9417ff0bc5 2026-04-28 00:55:52.209245+00:00 -------------------------------------------------------------------------------- Name : xrdp Product : Fedora 43 Version : 0.10.6 Release : 1.fc43 URL : http://www.xrdp.org/ Summary : Open source remote desktop protocol (RDP) server Description : xrdp provides a fully functional RDP server compatible with a wide range of RDP clients, including FreeRDP and Microsoft RDP client. -------------------------------------------------------------------------------- Update Information: Security fixes CVE-2026-32105 CVE-2026-32107 CVE-2026-32623 CVE-2026-32624 CVE-2026-33145 CVE-2026-33516 CVE-2026-33689 CVE-2026-35512 New features Support for xorgxrdp bug fixes #249 and #342 (#3721) Bug fixes Honour pass_shell_as_env setting only if user sets a shell (#3725) We no longer try to create a NULL authentication file when using VNC over UDS (#3727) Problems with the Brazilian ABNT2 keyboard mapping have been corrected (#3728 3736) A 'file exists' error when installing xrdp over an existing installation has been addressed (#3780) -------------------------------------------------------------------------------- ChangeLog: * Sat Apr 18 2026 Bojan Smojver - 1:0.10.6-1 - Update to 0.10.6 - CVE-2026-32105, CVE-2026-32107, CVE-2026-32623, CVE-2026-32624 - CVE-2026-33145, CVE-2026-33516, CVE-2026-33689, CVE-2026-35512 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2459298 - CVE-2026-32105 xrdp: xrdp: Data integrity compromised due to missing MAC signature verification in Classic RDP Security [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2459298 [ 2 ] Bug #2459302 - CVE-2026-32107 xrdp: xrdp: Privilege Escalation via improper privilegemanagement [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2459302 [ 3 ] Bug #2459616 - CVE-2026-33145 xrdp: xrdp: Arbitrary Command Execution via unsafe handling of AlternateShell parameter [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2459616 [ 4 ] Bug #2459618 - CVE-2026-32623 xrdp: xrdp NeutrinoRDP: Remote Code Execution or Denial of Service via heap-based buffer overflow in fragmented RDP data handling [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2459618 [ 5 ] Bug #2459620 - CVE-2026-35512 xrdp: xrdp: Remote Code Execution via heap-based buffer overflow [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2459620 [ 6 ] Bug #2459621 - CVE-2026-33516 xrdp: xrdp: Denial of Service and Information Disclosure via specially crafted RDP message [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2459621 [ 7 ] Bug #2459623 - CVE-2026-33689 xrdp: xrdp: Denial of Service and Information Disclosure via Out-of-Bounds Read [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2459623 [ 8 ] Bug #2459625 - CVE-2026-32624 xrdp: xrdp: Denial of Service via crafted username and domain name [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2459625 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-9417ff0bc5' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe sendan email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new . Critical security updates for Fedora 43 xrdp address multiple threats including remote code execution and denial of service.. Fedora security advisory, xrdp update, remote desktop threats, software vulnerabilities, security updates. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Apr 28, 2026 Important Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200