Fedora Linux 8568 Published by

A xrdp security update has been released for Fedora 31.



SECURITY: Fedora 31 Update: xrdp-0.9.13.1-1.fc31


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2020-9c26a458ae
2020-07-09 01:05:44.962901
--------------------------------------------------------------------------------

Name : xrdp
Product : Fedora 31
Version : 0.9.13.1
Release : 1.fc31
URL :   http://www.xrdp.org/
Summary : Open source remote desktop protocol (RDP) server
Description :
xrdp provides a fully functional RDP server compatible with a wide range
of RDP clients, including FreeRDP and Microsoft RDP client.

--------------------------------------------------------------------------------
Update Information:

This is a security fix release that includes fixes for the following local
buffer overflow vulnerability. - CVE-2022-4044: Local users can perform a
buffer overflow attack against the xrdp-sesman service and then impersonate it
This update is recommended for all xrdp users.
--------------------------------------------------------------------------------
ChangeLog:

* Tue Jun 30 2020 Bojan Smojver - 1:0.9.13.1-1
- Bump up to 0.9.13.1
- CVE-2022-4044
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2020-9c26a458ae' at the command
line. For more information, refer to the dnf documentation available at
  http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
  https://fedoraproject.org/keys