CVE-2026-44978Disclosure(neutrinolabs / xrdp)

LOWCVSS 5.3 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch neutrinolabs xrdp systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

xrdp is an open source RDP server. Versions 0.10.6 and prior contain a heap out-of-bounds read vulnerability within the FIPS-specific receive paths. This vulnerability does not affect the default configuration of xrdp. The vulnerability is only exploitable when the security layer is set to security_layer=negotiate or security_layer=rdp, and the crypto level is changed to crypt_level=fips in xrdp.ini. In this specific non-default mode, the server fails to validate the FIPS padding length field, leading to a pointer underflow and a subsequent negative length calculation. An unauthenticated remote attacker can exploit this by sending a crafted FIPS-protected PDU, causing a heap out-of-bounds read that results in a process crash and denial of service (DoS). However, since xrdp forks a new process for each connection by default, an out-of-bounds read causing a process crash is unlikely to bring down the entire xrdp service. This issue has been fixed in version 0.10.6.1.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-20CWE-125

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • xrdp

Threat summary

  • Patch or workaround signal is available
  • 1 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • 1 total mentions across 1 day

Affected systems

Products
xrdp

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-05-19: 1Patch / Workaround · 2026-05-19: 1Technical Details · 2026-05-19: 105-19
Signal classification1 categories
Disclosure
1100.0%
Referenced assets1 URL
By indicator
Full discourse1 post
  • Hephaestvs@Vulcanux_
    Disclosure

    csirt_it: #Rilevata vulnerabilità per FreePBX CVE-2026-44978 con gravità “alta” Rischio: 🟠 Tipologia: 🔸 Remote Code Execution 🔗https://www.acn.gov.it/portale/w/rilevata-vulnerabilita-alta-per-freepbx 🔄Aggiornamenti disponibili🔄 https://t.co/UDZhEzgeaW

    Post summary

    The post announces the discovery of a high‑severity Remote Code Execution vulnerability (CVE‑2026‑44978) in FreePBX and notes that updates are available.

    0000045
    613 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appneutrinolabsxrdp---

Explore more