PT-2026-61020 · Xrdp+1 · Xrdp+1

CVE-2026-54538

·

Published

2026-07-08

·

Updated

2026-08-18

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions xrdp versions prior to 0.10.6.1
Description The software fails to properly validate the totalLength field within the RDP protocol control header during packet reception. An unauthenticated remote attacker can send a specially crafted packet that forces the xrdp process or thread into an infinite, CPU-bound loop. This occurs because the internal pointer fails to advance and the deadlock prevention mechanism is bypassed for specific protocol data unit types, causing the process to consume excessive CPU resources indefinitely. This can result in the xrdp service becoming unavailable and may lead to system-wide resource exhaustion if multiple malicious connections are established.
Recommendations Update to version 0.10.6.1.

Exploit

Fix

DoS

Infinite Loop

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-54538
GHSA-9J3Q-9MVW-QV7J
OPENSUSE-SU-2026:11543-1

Affected Products

Red Os
Xrdp