freerdp2 2.11.2+dfsg1-1 source package in Ubuntu

Changelog

freerdp2 (2.11.2+dfsg1-1) unstable; urgency=medium

  * New upstream release. (Closes: #1051638).
  * Fixed security issues since v2.11.0:
    - CVE-2023-40589: [codec,ncrush] fix index checks properly verify all
      offsets while decoding data.
    - CVE-2023-40567: Fix out-of-bounds write in the
      `clear_decompress_bands_data` function.
    - CVE-2023-40188: Fix out-of-bounds read in the `general_LumaToYUV444`
      function.
    - CVE-2023-40186: Fix out-of-bounds write in the `gdi_CreateSurface`
      function.
    - CVE-2023-40181: Fix out-of-bounds read in the `zgfx_decompress_segment`
      function.
    - CVE-2023-39356: Fix out-of-bounds read in the `gdi_multi_opaque_rect`
      function.
    - CVE-2023-39355: Fix use-after-free in processing
      `RDPGFX_CMDID_RESETGRAPHICS` packets.
    - CVE-2023-39354: Fix out-of-bounds read in the `nsc_rle_decompress_data`
      function.
    - CVE-2023-39353: Fix missing offset validation leading to out-of-bounds
      read in the `libfreerdp/codec/rfx.c` file.
    - CVE-2023-39352: Fix invalid offset validation leading to out-of-bounds
      write.
    - CVE-2023-39351: Fix null-pointer-dereference leading a crash in the
      RemoteFX (rfx) handling.
    - CVE-2023-39350: Fix integer underflow leading to DOS (e.g. abort due to
      `WINPR_ASSERT` with default compilation flags).
  * debian/patches:
    + Drop 0001_fix_ftbfs_1041377.patch. Applied upstream.
  * debian/control:
    + Add B-D: libkrb5-dev.
  * debian/rules:
    + Add -DWITH_KERBEROS=ON configure option. (Closes: #1036095).
  * debian/watch:
    + Rework file. Find all released versions of freerdp2. (Closes: #1053317).
      Thanks to Tobias Frost for sending a patch.

 -- Mike Gabriel <email address hidden>  Sun, 01 Oct 2023 23:21:15 +0200

Upload details

Uploaded by:
Debian Remote Maintainers
Uploaded to:
Sid
Original maintainer:
Debian Remote Maintainers
Architectures:
any
Section:
misc
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
freerdp2_2.11.2+dfsg1-1.dsc 3.4 KiB 053344e6b3ef782e3dd7364aed3a0e6e8004dbd6a04efbcf30ca1fa17d1ddbe1
freerdp2_2.11.2+dfsg1.orig.tar.xz 2.2 MiB fbe63d87fc728af1465ecbf9db9769fc5c735855773d041d4f288d79e5063a6b
freerdp2_2.11.2+dfsg1-1.debian.tar.xz 43.7 KiB a048fe57385f3c67d25cecf0cb70332e73677623a95a5a6ce5f83fd2aecdea7b

No changes file available.

Binary packages built by this source

freerdp2-dev: Free Remote Desktop Protocol library (development files)

 FreeRDP is a libre client/server implementation of the Remote
 Desktop Protocol (RDP).
 .
 This package contains the FreeRDP development files.

freerdp2-shadow-x11: FreeRDP x11 shadowing server

 FreeRDP is a libre client/server implementation of the Remote
 Desktop Protocol (RDP).
 .
 This package contains a "shadowing" server that can be used to
 share an already started X11 DISPLAY.

freerdp2-shadow-x11-dbgsym: debug symbols for freerdp2-shadow-x11
freerdp2-wayland: RDP client for Windows Terminal Services (wayland client)

 FreeRDP is a libre client/server implementation of the Remote
 Desktop Protocol (RDP).
 .
 Currently, the FreeRDP clients supports the following Windows Versions:
 .
  * Windows NT Server
  * Windows 2000 Terminal Server
  * Windows XP
  * Windows 2003 Server
  * Windows Vista
  * Windows 2008/2008r2/2011SBS Server
  * Windows 7
  * Windows 2012/2012r2 Server
  * Windows 8
  * Windows 10
 .
 This package contains the wayland based client.

freerdp2-wayland-dbgsym: debug symbols for freerdp2-wayland
freerdp2-x11: RDP client for Windows Terminal Services (X11 client)

 FreeRDP is a libre client/server implementation of the Remote
 Desktop Protocol (RDP).
 .
 Currently, the FreeRDP client supports the following Windows Versions:
 .
  * Windows NT Server
  * Windows 2000 Terminal Server
  * Windows XP
  * Windows 2003 Server
  * Windows Vista
  * Windows 2008/2008r2/2011SBS Server
  * Windows 7
  * Windows 2012/2012r2 Server
  * Windows 8
  * Windows 10
 .
 This package contains the X11 based client.

freerdp2-x11-dbgsym: debug symbols for freerdp2-x11
libfreerdp-client2-2: No summary available for libfreerdp-client2-2 in ubuntu noble.

No description available for libfreerdp-client2-2 in ubuntu noble.

libfreerdp-client2-2-dbgsym: No summary available for libfreerdp-client2-2-dbgsym in ubuntu noble.

No description available for libfreerdp-client2-2-dbgsym in ubuntu noble.

libfreerdp-server2-2: No summary available for libfreerdp-server2-2 in ubuntu noble.

No description available for libfreerdp-server2-2 in ubuntu noble.

libfreerdp-server2-2-dbgsym: No summary available for libfreerdp-server2-2-dbgsym in ubuntu noble.

No description available for libfreerdp-server2-2-dbgsym in ubuntu noble.

libfreerdp-shadow-subsystem2-2: No summary available for libfreerdp-shadow-subsystem2-2 in ubuntu noble.

No description available for libfreerdp-shadow-subsystem2-2 in ubuntu noble.

libfreerdp-shadow-subsystem2-2-dbgsym: No summary available for libfreerdp-shadow-subsystem2-2-dbgsym in ubuntu noble.

No description available for libfreerdp-shadow-subsystem2-2-dbgsym in ubuntu noble.

libfreerdp-shadow2-2: No summary available for libfreerdp-shadow2-2 in ubuntu noble.

No description available for libfreerdp-shadow2-2 in ubuntu noble.

libfreerdp-shadow2-2-dbgsym: No summary available for libfreerdp-shadow2-2-dbgsym in ubuntu noble.

No description available for libfreerdp-shadow2-2-dbgsym in ubuntu noble.

libfreerdp2-2: No summary available for libfreerdp2-2 in ubuntu noble.

No description available for libfreerdp2-2 in ubuntu noble.

libfreerdp2-2-dbgsym: No summary available for libfreerdp2-2-dbgsym in ubuntu noble.

No description available for libfreerdp2-2-dbgsym in ubuntu noble.

libuwac0-0: No summary available for libuwac0-0 in ubuntu noble.

No description available for libuwac0-0 in ubuntu noble.

libuwac0-0-dbgsym: No summary available for libuwac0-0-dbgsym in ubuntu noble.

No description available for libuwac0-0-dbgsym in ubuntu noble.

libuwac0-dev: Using wayland as a client (development files)

 Using wayland as a client (uwac) is a library to provide common
 functionality for wayland clients.
 .
 This package contains the libuwac development files

libwinpr-tools2-2: No summary available for libwinpr-tools2-2 in ubuntu noble.

No description available for libwinpr-tools2-2 in ubuntu noble.

libwinpr-tools2-2-dbgsym: No summary available for libwinpr-tools2-2-dbgsym in ubuntu noble.

No description available for libwinpr-tools2-2-dbgsym in ubuntu noble.

libwinpr2-2: No summary available for libwinpr2-2 in ubuntu noble.

No description available for libwinpr2-2 in ubuntu noble.

libwinpr2-2-dbgsym: No summary available for libwinpr2-2-dbgsym in ubuntu noble.

No description available for libwinpr2-2-dbgsym in ubuntu noble.

libwinpr2-dev: Windows Portable Runtime library (development files)

 WinPR is a spin-off project of FreeRDP which aims at providing a portable
 implementation of important portions of the Windows API. Just like FreeRDP,
 WinPR is released under the Apache license. Unlike Wine, WinPR does not provide
 binary compatibility, and does not require applications to be built for
 Windows. Instead, WinPR provides API compatibility for applications targeting
 non-Windows environments. When on Windows, the original native API is being
 used instead of the equivalent WinPR implementation, without having to modify
 the code using it.
 .
 This package contains the WinPR development files.

winpr-utils: Windows Portable Runtime library command line utilities

 WinPR is a spin-off project of FreeRDP which aims at providing a portable
 implementation of important portions of the Windows API. Just like FreeRDP,
 WinPR is released under the Apache license. Unlike Wine, WinPR does not provide
 binary compatibility, and does not require applications to be built for
 Windows. Instead, WinPR provides API compatibility for applications targeting
 non-Windows environments. When on Windows, the original native API is being
 used instead of the equivalent WinPR implementation, without having to modify
 the code using it.
 .
 This package contains WinPR command line utils (winpr-hash, winpr-makecert).

winpr-utils-dbgsym: debug symbols for winpr-utils