Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2020:2417 - Security Advisory
Issued:
2020-06-08
Updated:
2020-06-08

RHSA-2020:2417 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: freerdp security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for freerdp is now available for Red Hat Enterprise Linux 8.0 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. The xfreerdp client can connect to RDP servers such as Microsoft Windows machines, xrdp, and VirtualBox.

Security Fix(es):

  • freerdp: Out-of-bounds write in crypto_rsa_common in libfreerdp/crypto/crypto.c (CVE-2020-13398)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.0 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.0 x86_64

Fixes

  • BZ - 1841199 - CVE-2020-13398 freerdp: Out-of-bounds write in crypto_rsa_common in libfreerdp/crypto/crypto.c

CVEs

  • CVE-2020-13398

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.0

SRPM
freerdp-2.0.0-46.rc4.el8_0.2.src.rpm SHA-256: a705ad1fc06de75e05c2a96e4d8871a5c77cb9d2fc582fc0c9bf6d673f01a178
ppc64le
freerdp-2.0.0-46.rc4.el8_0.2.ppc64le.rpm SHA-256: a7556b17600b9a481c95f6e1e4701cd52efc2f85edbf3df1469b5d1761f007de
freerdp-debuginfo-2.0.0-46.rc4.el8_0.2.ppc64le.rpm SHA-256: 1c393cd1f4fc0090a9f84b88c344bcfe61b48d7eae0f773496001ac95f282397
freerdp-debugsource-2.0.0-46.rc4.el8_0.2.ppc64le.rpm SHA-256: 5081d4ca29070fb54b2e577945a988678b369a7647510f501c908517b0c5c6ef
freerdp-libs-2.0.0-46.rc4.el8_0.2.ppc64le.rpm SHA-256: 512ecdca22a506d7f8d1d0611d444c383a4b09fcda783ec505a845da99d9bab9
freerdp-libs-debuginfo-2.0.0-46.rc4.el8_0.2.ppc64le.rpm SHA-256: 5ccff0d49f4bea91b8d47cce79c188ef0acbdb172f3f245f9578f4ad30e64f56
libwinpr-2.0.0-46.rc4.el8_0.2.ppc64le.rpm SHA-256: 965ed90ffb3e8b91d4833f71c2a63a5a3b086c2e09a0c3f0c3fb2926ce0b502d
libwinpr-debuginfo-2.0.0-46.rc4.el8_0.2.ppc64le.rpm SHA-256: e5d5aa8737f2f5f6663f22d1597888a8fcea4c075e6bfe7a57791a3478e0106b
libwinpr-devel-2.0.0-46.rc4.el8_0.2.ppc64le.rpm SHA-256: 28933fa6e0c7ab4efd4d84766bd81cb4cf723fadb5770f19ea68560f2e9793f7

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.0

SRPM
freerdp-2.0.0-46.rc4.el8_0.2.src.rpm SHA-256: a705ad1fc06de75e05c2a96e4d8871a5c77cb9d2fc582fc0c9bf6d673f01a178
x86_64
freerdp-2.0.0-46.rc4.el8_0.2.x86_64.rpm SHA-256: 798f689f1e3214c071e7f7faf528211cc1707079129699a33c782bc4f976f2ac
freerdp-debuginfo-2.0.0-46.rc4.el8_0.2.i686.rpm SHA-256: fecf60d0ed73c7c47fc295a404050927a4bb6bee565aaf3b934bc6e2b7797136
freerdp-debuginfo-2.0.0-46.rc4.el8_0.2.x86_64.rpm SHA-256: fe35cf7f1a45bbb60a4e860f9df2430a04c4429281590d9740d6055163afd04a
freerdp-debugsource-2.0.0-46.rc4.el8_0.2.i686.rpm SHA-256: 283eeba790d5ea901d55db4a5f68404bf4837746f56c6e0514cedb798b16c8d0
freerdp-debugsource-2.0.0-46.rc4.el8_0.2.x86_64.rpm SHA-256: 1926a3529aeee8aafaa08b82489046ef400d9e5ad099d2e6fa1d07f8c2f94eb1
freerdp-libs-2.0.0-46.rc4.el8_0.2.i686.rpm SHA-256: ae5ceaf61857ed3ac5fde179520d85aaba791cb74bca5db72e363f85842ac5ff
freerdp-libs-2.0.0-46.rc4.el8_0.2.x86_64.rpm SHA-256: a27d8c59c151c4e1d3b0f99de428596d87d741699c45fc469c138a50c8142780
freerdp-libs-debuginfo-2.0.0-46.rc4.el8_0.2.i686.rpm SHA-256: c676dcdfe591196c1bf71134871453f9d52df80d8c4d6fc0ae7979f22445b810
freerdp-libs-debuginfo-2.0.0-46.rc4.el8_0.2.x86_64.rpm SHA-256: 75eb3a98ce72ded1fc30ec4148a4678daac0ba8c51d8670956c0c519c6c8fc8a
libwinpr-2.0.0-46.rc4.el8_0.2.i686.rpm SHA-256: 8fc90775fb8f9a555ddb169c59b85b152bba10439182553d35ab8e40f5eead9f
libwinpr-2.0.0-46.rc4.el8_0.2.x86_64.rpm SHA-256: 949ae3c6aba2092fa8993c5927d5dd9bc5cbfad236f98c2ec0f3963ab7382b39
libwinpr-debuginfo-2.0.0-46.rc4.el8_0.2.i686.rpm SHA-256: 87551f0dd8f1021de6fdab0bb2c526091f81904e7f02c173ee18615fa34a59ca
libwinpr-debuginfo-2.0.0-46.rc4.el8_0.2.x86_64.rpm SHA-256: 5c7532a3394fdcf393f3d516972886c14ae77a9e8a3becdc281f4c73927a5acb
libwinpr-devel-2.0.0-46.rc4.el8_0.2.i686.rpm SHA-256: b306de0298c4a961401c2248e8504e200ed310e78bb645fefb9f2615b6f69416
libwinpr-devel-2.0.0-46.rc4.el8_0.2.x86_64.rpm SHA-256: 01f4e5895fba98a612fd4833e54e61a1049a238d416b75132d1fdd9f7b4bdd63

The Red Hat security contact is [email protected]. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat, Inc.

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility