Release date:
2026-07-30 12:11:08 UTC
Description:
- CVE-2026-64624: fix command-line argument injection via a crafted .rdp file
(CWE-88); gate embedded CLI option parsing behind the
WITH_EMBEDDED_CLI_IN_RDP_FILES build option, off by default, so a
slash-prefixed line can no longer inject options such as /rdp2tcp into the
client
Updated packages:
-
freerdp-2.1.1-5.el7_9.tuxcare.els23.x86_64.rpm
sha:e39f8cbb866925d2128d252e95eafa27cfd725335465383d506499e86ba4af44
-
freerdp-devel-2.1.1-5.el7_9.tuxcare.els23.i686.rpm
sha:6572177a3e3ca8321f4fb528d201eff057cc3151b3a5fcce810475b9719d8e14
-
freerdp-devel-2.1.1-5.el7_9.tuxcare.els23.x86_64.rpm
sha:ce5ab16d5e927fc506b25ca0391bd5f8cc0367745ac90b988d8acc8428d0a59d
-
freerdp-libs-2.1.1-5.el7_9.tuxcare.els23.i686.rpm
sha:443b1a5daeb3ac23e46feb006de83b110765bf2ffd5ae2045725a1ed4d160fe0
-
freerdp-libs-2.1.1-5.el7_9.tuxcare.els23.x86_64.rpm
sha:55aec4d1aa8cf19600b76b855d7737062206c05f3f3542a23238592e79e9b2a7
-
libwinpr-2.1.1-5.el7_9.tuxcare.els23.i686.rpm
sha:770e3323f8519096ee2ab9689bee526965184b3665d449ef19393721a4eb1b87
-
libwinpr-2.1.1-5.el7_9.tuxcare.els23.x86_64.rpm
sha:661a5f3944b51f931b06fc9f6e67df9754df39d8ae20d2a99f47b5bc16d507a2
-
libwinpr-devel-2.1.1-5.el7_9.tuxcare.els23.i686.rpm
sha:713cb32a23b47f278ef7d667c875128717290095978c3e726a74d6dbc9b7f792
-
libwinpr-devel-2.1.1-5.el7_9.tuxcare.els23.x86_64.rpm
sha:697d80f6a1ac5914f82493044758f31f452fb8a57ecefaa6f48c9b4be0892cfa
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.