Packages
Details
It was discovered that FreeRDP incorrectly handled memory under certain
circumstances, which could lead to an out-of-bounds heap write. An
attacker could possibly use this issue to cause a denial of service or
execute arbitrary code. (CVE-2026-45700)
In addition, this update fixes a regression introduced in USN-8105-1.
The update introduces a complete fix for CVE-2026-22858, CVE-2026-23732
and CVE-2026-25952 in Ubuntu 24.04 LTS and Ubuntu 25.10.
It was discovered that FreeRDP incorrectly handled memory under certain
circumstances, which could lead to an out-of-bounds heap write. An
attacker could possibly use this issue to cause a denial of service or
execute arbitrary code. (CVE-2026-45700)
In addition, this update fixes a regression introduced in USN-8105-1.
The update introduces a complete fix for CVE-2026-22858, CVE-2026-23732
and CVE-2026-25952 in Ubuntu 24.04 LTS and Ubuntu 25.10.
Update instructions
In general, a standard system update will make all the necessary changes.
Learn more about how to get the fixes.The problem can be corrected by updating your system to the following package versions:
| Ubuntu Release | Package Version | ||
|---|---|---|---|
| 26.04 LTS resolute | freerdp-x11 – 3.24.2+dfsg-1ubuntu1.1 | ||
| freerdp3-x11 – 3.24.2+dfsg-1ubuntu1.1 | |||
| libfreerdp3-3 – 3.24.2+dfsg-1ubuntu1.1 | |||
| 25.10 questing | freerdp3-x11 – 3.16.0+dfsg-2ubuntu0.5 | ||
| libfreerdp3-3 – 3.16.0+dfsg-2ubuntu0.5 | |||
| 24.04 LTS noble | freerdp2-x11 – 2.11.5+dfsg1-1ubuntu0.1~esm6 | ||
| freerdp3-x11 – 3.5.1+dfsg1-0ubuntu1.6 | |||
| libfreerdp2-2t64 – 2.11.5+dfsg1-1ubuntu0.1~esm6 | |||
| libfreerdp3-3 – 3.5.1+dfsg1-0ubuntu1.6 | |||
| 22.04 LTS jammy | freerdp2-x11 – 2.6.1+dfsg1-3ubuntu2.11 | ||
| libfreerdp2-2 – 2.6.1+dfsg1-3ubuntu2.11 | |||
| 20.04 LTS focal | freerdp2-x11 – 2.6.1+dfsg1-0ubuntu0.20.04.2+esm4 | ||
| libfreerdp2-2 – 2.6.1+dfsg1-0ubuntu0.20.04.2+esm4 | |||
| 18.04 LTS bionic | freerdp2-x11 – 2.2.0+dfsg1-0ubuntu0.18.04.4+esm6 | ||
| libfreerdp2-2 – 2.2.0+dfsg1-0ubuntu0.18.04.4+esm6 | |||
Reduce your security exposure
Ubuntu Pro provides ten-year security coverage to 25,000+ packages in Main and Universe repositories, and it is free for up to five machines.