-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2022-26e9589cd3 2022-03-25 22:04:41.514710 --------------------------------------------------------------------------------
Name : xrdp Product : Fedora 34 Version : 0.9.19 Release : 1.fc34 URL : http://www.xrdp.org/ Summary : Open source remote desktop protocol (RDP) server Description : xrdp provides a fully functional RDP server compatible with a wide range of RDP clients, including FreeRDP and Microsoft RDP client. -------------------------------------------------------------------------------- Update Information: Release notes for xrdp v0.9.19 (2022/03/17) General announcements - Running xrdp and xrdp-sesman on separate hosts is still supported by this release, but is now deprecated. This is not secure. A future release will replace the TCP socket used between these processes with a Unix Domain Socket, and then cross- host running will not be possible. New features - Both inbound and outbound clipboards can now be restricted for text, files or images [Sponsored by @CyberTrust @clear-code and @kenhys] (#2087) Bug fixes - CVE-2022-23613: Privilege escalation on xrdp-sesman (This fix is also in the out-of-band v0.9.18.1 release) - The versions of imlib2 used on RHEL 7 and 8 are now detected correctly (#2118) - Some situations where zombie processes could exist have been resolved (#2146, #2151, #2168) - Some null-pointer exceptions which can happen in the logging module have been addressed (#2149) - Some minor logging errors have been corrected (#2152) - The signal handling in sesman has been reworked to prevent race conditions when a child exits. This has also made it possible to reliably reload the sesman configuration with SIGHUP (#1729, #2168) Internal changes - Versions 0.13 and later of checklib can undefine the pre-processor symbol HAVE_STDINT_H. The xrdp tests now build successfully against these versions (#2124) - OpenSSL packaging changes (#2130):- - The OpenSSL 3 EVP interface is now fully supported - When building against OpenSSL 3, an internal implementation of the RC4 cipher is used instead of the implementation from the OpenSSL legacy provider - The wrapping of the OpenSSL library has been improved which should make it simpler to provide an alternative cryptographic provider in the future, if required - The logging of TLS/non-TLS security negotiation has been improved - cppcheck version used for CI bumped to 2.7 (#2140) - The s_check() macro which is easily mis-used has been removed (#2144) - Status values for the DRDYNVC channel are now available in libxrdp/xrdp_channel.h Changes for packagers or developers - On OpenSSL 3 systems, there is now no need to build with the -Wno-error=deprecated- declarations flag Known issues - On-the-fly resolution change requires the Microsoft Store version of Remote Desktop client but sometimes crashes on connect (#1869) - xrdp's login dialog is not relocated at the center of the new resolution after on-the-fly resolution change happens (#1867) -------------------------------------------------------------------------------- ChangeLog: * Thu Mar 17 2022 Bojan Smojver <[email protected]> - 1:0.9.19-1 - Bump up to 0.9.19 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-26e9589cd3' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- [email protected] To unsubscribe send an email to [email protected] Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/[email protected] Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure
