Количество 7
Количество 7
BDU:2026-15955
Уязвимость обработчика Client Control PDU сервера XRDP, позволяющая нарушителю раскрыть защищаемую информацию или вызвать отказ в обслуживании
CVE-2026-55645
xrdp is an open source RDP server. Versions 0.10.6 and prior contain a vulnerability concerning the processing of Client Control PDUs. During the RDP connection sequence, the parser does not perform sufficient length validation before reading specific data fields from the network stream. A remote, unauthenticated attacker could potentially exploit this flaw by sending a specially crafted, truncated Client Control PDU. Due to missing bounds checks, the xrdp process may perform out-of-bounds memory reads, which can result in the termination of the service (Denial of Service). However, since xrdp forks a new process for each connection by default, an out-of-bounds read causing a process crash is unlikely to bring down the entire xrdp service.This issue has been fixed in version 0.10.6.1.
CVE-2026-55645
xrdp is an open source RDP server. Versions 0.10.6 and prior contain a vulnerability concerning the processing of Client Control PDUs. During the RDP connection sequence, the parser does not perform sufficient length validation before reading specific data fields from the network stream. A remote, unauthenticated attacker could potentially exploit this flaw by sending a specially crafted, truncated Client Control PDU. Due to missing bounds checks, the xrdp process may perform out-of-bounds memory reads, which can result in the termination of the service (Denial of Service). However, since xrdp forks a new process for each connection by default, an out-of-bounds read causing a process crash is unlikely to bring down the entire xrdp service.This issue has been fixed in version 0.10.6.1.
CVE-2026-55645
xrdp is an open source RDP server. Versions 0.10.6 and prior contain a ...
ALT-PU-2026-13623
ALT-PU-2026-13623: package `xrdp` update to version 0.10.6.1-alt2
ROS-20260818-80-0042
Уязвимость xrdp
ROS-20260818-73-0046
Уязвимость xrdp
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2026-15955 Уязвимость обработчика Client Control PDU сервера XRDP, позволяющая нарушителю раскрыть защищаемую информацию или вызвать отказ в обслуживании | CVSS3: 6.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-55645 xrdp is an open source RDP server. Versions 0.10.6 and prior contain a vulnerability concerning the processing of Client Control PDUs. During the RDP connection sequence, the parser does not perform sufficient length validation before reading specific data fields from the network stream. A remote, unauthenticated attacker could potentially exploit this flaw by sending a specially crafted, truncated Client Control PDU. Due to missing bounds checks, the xrdp process may perform out-of-bounds memory reads, which can result in the termination of the service (Denial of Service). However, since xrdp forks a new process for each connection by default, an out-of-bounds read causing a process crash is unlikely to bring down the entire xrdp service.This issue has been fixed in version 0.10.6.1. | CVSS3: 6.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-55645 xrdp is an open source RDP server. Versions 0.10.6 and prior contain a vulnerability concerning the processing of Client Control PDUs. During the RDP connection sequence, the parser does not perform sufficient length validation before reading specific data fields from the network stream. A remote, unauthenticated attacker could potentially exploit this flaw by sending a specially crafted, truncated Client Control PDU. Due to missing bounds checks, the xrdp process may perform out-of-bounds memory reads, which can result in the termination of the service (Denial of Service). However, since xrdp forks a new process for each connection by default, an out-of-bounds read causing a process crash is unlikely to bring down the entire xrdp service.This issue has been fixed in version 0.10.6.1. | CVSS3: 6.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-55645 xrdp is an open source RDP server. Versions 0.10.6 and prior contain a ... | CVSS3: 6.5 | 0% Низкий | 3 месяца назад | |
ALT-PU-2026-13623 ALT-PU-2026-13623: package `xrdp` update to version 0.10.6.1-alt2 | CVSS3: 9.8 | около 2 месяцев назад | ||
ROS-20260818-80-0042 Уязвимость xrdp | CVSS3: 6.5 | 0% Низкий | около 2 месяцев назад | |
ROS-20260818-73-0046 Уязвимость xrdp | CVSS3: 6.5 | 0% Низкий | около 2 месяцев назад |
Уязвимостей на страницу