| Summary: | freerdp cannot connect to a recently patched windows system. | ||
|---|---|---|---|
| Product: | Mageia | Reporter: | Alan Richter <arichter> |
| Component: | RPM Packages | Assignee: | QA Team <qa-bugs> |
| Status: | RESOLVED FIXED | QA Contact: | |
| Severity: | normal | ||
| Priority: | Normal | CC: | brtians1, herman.viaene, luigiwalser, marja11, mhrambo3501, sysadmin-bugs |
| Version: | 6 | Keywords: | advisory, validated_update |
| Target Milestone: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| URL: | https://github.com/FreeRDP/FreeRDP/issues/4449 | ||
| Whiteboard: | MGA6-64-OK MGA6-32-OK | ||
| Source RPM: | freerdp-2.0.0-0.rc0.1.mga6.src.rpm | CVE: | |
| Status comment: | |||
|
Description
Alan Richter
2018-04-17 18:47:35 CEST
Assigning to the registered maintainer. Assignee:
bugsquad =>
geiger.david68210 Assigning to QA, Advisory: ============================= Our current freerdp package can't connect to a recently patched windows system, this issue was fixed upstream in freerdp 2.0.0 RC2. So this update fixes this issue. ============================= Packages in 6/core/updates_testing: ======================== freerdp-2.0.0-0.rc2.1.mga6.x86_64.rpm lib64freerdp2-2.0.0-0.rc2.1.mga6.x86_64.rpm lib64freerdp-devel-2.0.0-0.rc2.1.mga6.x86_64.rpm freerdp-2.0.0-0.rc2.1.mga6.i586.rpm ibfreerdp2-2.0.0-0.rc2.1.mga6.i586.rpm libfreerdp-devel-2.0.0-0.rc2.1.mga6.i586.rpm Source RPM: ======================== freerdp-2.0.0-0.rc2.1.mga6.src.rpm Assignee:
geiger.david68210 =>
qa-bugs MGA6-32 on Dell Latitude D600 MATE No installation issues Installed first 2.0.0-0.rc0.1. and at CLI: $ xfreerdp /v:<winlaptop> /u:<username> /p:<passwd> get error ERRCONNECT_SECURITY_NEGO_CONNECT_FAILED , which is not the same as Alan reported. Will test the update shortly. CC:
(none) =>
herman.viaene Updated freerdp gives same error. I can ping the <winlaptop>, but I cannot ssh into it (time out). I have to find out the network or firewall settings of this machine Info: the winlaptop is a Win10 Home edition and that does not support RDP. 64-bit installed properly, but currently do not have any window servers to test this against. installed without issue Attempted for remote assistance module in Win7/10, but could not establish a connection CC:
(none) =>
brtians1 I tried freerdp-2.0.0-0.rc2.1.mga6.x86_64.rpm and lib64freerdp2-2.0.0-0.rc2.1.mga6.x86_64.rpm from updates_testing and they worked correctly on a server 2008 and Windows 10. These rpm work as well as the ones I built. They certainly work better than freerdp-2.0.0.0-git20161228.3. Started with : $ rpm -qa | grep freerdp lib64freerdp2-2.0.0-0.rc0.1.mga6 freerdp-2.0.0-0.rc0.1.mga6 rdp to a freshly updated windows 10 vm resulted in: $ xfreerdp /size:80% 10.189.16.174 [07:12:35:011] [12205:12205] [WARN][com.freerdp.client.common.cmdline] - Using deprecated command-line interface! [07:12:35:011] [12205:12205] [WARN][com.freerdp.client.common.compatibility] - 10.189.16.174 -> /v:10.189.16.174 [07:12:35:011] [12205:12205] [WARN][com.freerdp.client.common.compatibility] - [07:12:35:011] [12205:12206] [INFO][com.freerdp.client.x11] - No user name set. - Using login name: mrambo Domain: . Password: [07:12:41:410] [12205:12206] [ERROR][com.freerdp.core] - freerdp_set_last_error ERRCONNECT_PASSWORD_CERTAINLY_EXPIRED [0x0002000F] [07:12:41:410] [12205:12206] [ERROR][com.freerdp.core.transport] - BIO_read returned an error: error:14094438:SSL routines:ssl3_read_bytes:tlsv1 alert internal error [07:12:41:410] [12205:12206] [ERROR][com.freerdp.client.x11] - Freerdp connect error exit status 1 Manually downloaded and installed the update. $ sudo urpmi ./freerdp-2.0.0-0.rc2.1.mga6.x86_64.rpm ./lib64freerdp2-2.0.0-0.rc2.1.mga6.x86_64.rpm After updating I was able to again connect to the windows 10 vm. The update looks good to me on mga6 x86_64. Whiteboard:
(none) =>
MGA6-64-OK Ran the same test in a 32 bit mga6 vm. Results both before and after the update were identical so the 32 bit variant also looks good to me. Whiteboard:
MGA6-64-OK =>
MGA6-64-OK MGA6-32-OK Thanks to all testers; nice surprise that people had the required systems. Advisoried, validated. Keywords:
(none) =>
advisory, validated_update An update for this issue has been pushed to the Mageia Updates repository. https://advisories.mageia.org/MGAA-2018-0065.html Status:
NEW =>
RESOLVED Apparently this issue actually got a CVE: CVE-2018-0886. http://lists.suse.com/pipermail/sle-security-updates/2019-January/005053.html https://bugzilla.suse.com/show_bug.cgi?id=1085416 (In reply to David Walser from comment #12) > Apparently this issue actually got a CVE: CVE-2018-0886. > > http://lists.suse.com/pipermail/sle-security-updates/2019-January/005053.html > https://bugzilla.suse.com/show_bug.cgi?id=1085416 https://lists.opensuse.org/opensuse-updates/2019-01/msg00100.html CC:
(none) =>
luigiwalser |