Description

A flaw was found in the FreeRDP used by Anaconda's remote install feature, where a crafted RDP packet could trigger a segmentation fault. This issue causes the service to crash and remain defunct, resulting in a denial of service. It occurs pre-boot and is likely due to a NULL pointer dereference. Rebooting is required to recover the system.

INFO

Published Date :

2025-05-16T14:22:17.265Z

Last Modified :

2026-01-21T13:03:22.938Z

Source :

redhat
AFFECTED PRODUCTS

The following products are affected by CVE-2025-4478 vulnerability.

Vendors Products
Freerdp
  • Freerdp
Redhat
  • Enterprise Linux

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact