USN-8476-1

    Dashboard / Vulnerabilities / USN-8476-1

    USN-8476-1

    Published: 25 Jun 2026Last Modified: 25 Jun 2026

    Summary: xrdp vulnerabilities

    Details: It was discovered that xrdp incorrectly handled bounds checking when processing user domain information during the connection sequence. An unauthenticated remote attacker could use this issue to cause xrdp to crash, resulting in a denial of service, or possibly execute arbitrary code. (CVE-2025-68670) It was discovered that xrdp did not correctly enforce the maximum number of login attempts configured by the MaxLoginRetry parameter. A remote attacker could use this issue to perform an unlimited number of login attempts. (CVE-2024-39917) It was discovered that xrdp did not perform bounds checking when accessing font glyphs. Since some of this data is controllable by the user, a remote attacker could use this issue to cause xrdp to read out of bounds. This issue only affected Ubuntu 24.04 LTS. (CVE-2023-42822) It was discovered that xrdp did not properly handle session establishment errors. A remote attacker could use this issue to bypass OS-level session restrictions enforced by PAM, such as the maximum number of concurrent sessions per user. This issue only affected Ubuntu 24.04 LTS. (CVE-2023-40184)

    Affected packages

    Package

    Name: xrdp

    Purl: pkg:deb/ubuntu/xrdp?arch=source&distro=esm-apps%2Fbionic

    Affected ranges

    Type: ECOSYSTEM

    Events:

    Introduced- 0
    Fixed -0.9.5-2ubuntu0.1~esm3

    Affected versions

    0.9.1-9
    0.9.4-1
    0.9.4-2
    0.9.4-3
    0.9.4-4
    0.9.4-5
    0.9.5-1
    0.9.5-1build1
    0.9.5-2
    0.9.5-2ubuntu0.1~esm1
    0.9.5-2ubuntu0.1~esm2

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    USN-8476-1 | CVE-DB