CVE-2025-4478

A flaw was found in the FreeRDP used by Anaconda's remote install feature, where a crafted RDP packet could trigger a segmentation fault. This issue causes the service to crash and remain defunct, resulting in a denial of service. It occurs pre-boot and is likely due to a NULL pointer dereference. Rebooting is required to recover the system.
Configurations

No configuration.

History

23 May 2025, 05:15

Type Values Removed Values Added
Summary (en) A flaw was found in the gnome-remote-desktop used by Anaconda's remote install feature, where a crafted RDP packet could trigger a segmentation fault. This issue causes the service to crash and remain defunct, resulting in a denial of service. It occurs pre-boot and is likely due to a NULL pointer dereference. Rebooting is required to recover the system. (en) A flaw was found in the FreeRDP used by Anaconda's remote install feature, where a crafted RDP packet could trigger a segmentation fault. This issue causes the service to crash and remain defunct, resulting in a denial of service. It occurs pre-boot and is likely due to a NULL pointer dereference. Rebooting is required to recover the system.

19 May 2025, 13:35

Type Values Removed Values Added
Summary
  • (es) Se encontró una falla en el gnome-remote-desktop utilizado por la función de instalación remota de Anaconda. Un paquete RDP manipulado podía provocar un fallo de segmentación. Este problema provoca que el servicio se bloquee y permanezca inactivo, lo que resulta en una denegación de servicio. Ocurre antes del arranque y probablemente se deba a una desreferencia de puntero nulo. Es necesario reiniciar el sistema para recuperarlo.

16 May 2025, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-16 15:15

Updated : 2025-05-23 05:15


NVD link : CVE-2025-4478

Mitre link : CVE-2025-4478

CVE.ORG link : CVE-2025-4478


JSON object : View

Products Affected

No product.

CWE
CWE-476

NULL Pointer Dereference