Impact
xrdp is an open source RDP server. The vulnerability arises from improper length validation of capability data in the RDP Confirm Active packet, resulting in an out‑of‑bounds read. This can crash the xrdp process, leading to denial of service for the affected connection but not likely to bring down the entire service.
Affected Systems
The affected product is neutrinolabs xrdp version 0.10.6 and earlier. The fix is available in 0.10.6.1. Systems running earlier releases and accepting native RDP connections are vulnerable.
Risk and Exploitability
The CVSS score of 5.3 indicates moderate impact. EPSS < 1% suggests a very low probability of exploitation. The vulnerability is not listed in CISA KEV. Attackers can send a crafted RDP packet over the standard RDP port without authentication; because the failure only crashes a child process, repeated exploitation could degrade availability but is unlikely to compromise confidentiality or integrity. Overall risk remains moderate, but patching is advisable.
OpenCVE Enrichment