Xrdp is a technology platform tracked across 6 threat clusters and 7 intelligence report mentions on ThreatCluster. First observed January 21, 2026; most recent activity July 16, 2026.
Xrdp is an open-source remote desktop server for Linux that provides RDP-compatible access to a Linux host. Because Xrdp relies on FreeRDP components, security advisories affecting FreeRDP—such as critical buffer overflow issues—can impact Xrdp deployments, making it a notable entry point for remote-access security concerns in Linux environments.
A critical security update for Fedora 44 addresses multiple vulnerabilities in xrdp, including CVE-2026-32105, CVE-2026-32107, CVE-2026-32623, CVE-2026-32624, CVE-2026-33145, CVE-2026-33516, CVE-2026-33689, and…
Multiple vulnerabilities were identified in xrdp, an open-source RDP server, impacting Ubuntu 24.04 LTS. CVE-2025-68670 allows unauthenticated attackers to crash xrdp, leading to denial of service or arbitrary code…
On July 6, 2026, an update for xrdp version 0.10.6.1 was released, fixing 10 vulnerabilities and one regression. The vulnerabilities include CVE-2026-41252, CVE-2026-41521, CVE-2026-44178, CVE-2026-42218,…
Mageia 9 has been identified with two critical vulnerabilities: a heap buffer overflow (CVE-2026) and a severe buffer overflow risk (CVE-2025). These vulnerabilities affect users of Mageia 9 and openSUSE Leap 16.0,…
Fedora has issued advisories regarding critical buffer overflow vulnerabilities in the xfreerdp and wlfreerdp Remote Desktop Protocol clients from the FreeRDP project. Users connecting to RDP servers, including…
A critical stack-based buffer overflow vulnerability, CVE-2025-68670, was identified in xrdp, affecting users of Fedora 43. This vulnerability arises from improper bounds checking of domain string length, which could…