Xrdp — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
7
occurrences
First Seen
January 21, 2026
Last Seen
July 16, 2026

Xrdp is a technology platform tracked across 6 threat clusters and 7 intelligence report mentions on ThreatCluster. First observed January 21, 2026; most recent activity July 16, 2026.

Overview

Xrdp is an open-source remote desktop server for Linux that provides RDP-compatible access to a Linux host. Because Xrdp relies on FreeRDP components, security advisories affecting FreeRDP—such as critical buffer overflow issues—can impact Xrdp deployments, making it a notable entry point for remote-access security concerns in Linux environments.

Related Threat Clusters

  • Critical xrdp Vulnerabilities in Fedora 44 and 42 Require Immediate Attention

    A critical security update for Fedora 44 addresses multiple vulnerabilities in xrdp, including CVE-2026-32105, CVE-2026-32107, CVE-2026-32623, CVE-2026-32624, CVE-2026-33145, CVE-2026-33516, CVE-2026-33689, and…

    2 articles · Updated April 28, 2026
  • Critical xrdp Vulnerabilities Affecting Ubuntu Systems

    Multiple vulnerabilities were identified in xrdp, an open-source RDP server, impacting Ubuntu 24.04 LTS. CVE-2025-68670 allows unauthenticated attackers to crash xrdp, leading to denial of service or arbitrary code…

    2 articles · Updated June 25, 2026
  • Fedora xrdp Security Update Addresses 10 Vulnerabilities

    On July 6, 2026, an update for xrdp version 0.10.6.1 was released, fixing 10 vulnerabilities and one regression. The vulnerabilities include CVE-2026-41252, CVE-2026-41521, CVE-2026-44178, CVE-2026-42218,…

    2 articles · Updated July 16, 2026
  • Critical Vulnerabilities Found in Mageia 9 and openSUSE Leap 16.0

    Mageia 9 has been identified with two critical vulnerabilities: a heap buffer overflow (CVE-2026) and a severe buffer overflow risk (CVE-2025). These vulnerabilities affect users of Mageia 9 and openSUSE Leap 16.0,…

    251 articles · Updated February 12, 2026
  • Critical Buffer Overflow Vulnerability in FreeRDP Clients

    Fedora has issued advisories regarding critical buffer overflow vulnerabilities in the xfreerdp and wlfreerdp Remote Desktop Protocol clients from the FreeRDP project. Users connecting to RDP servers, including…

    4 articles · Updated January 21, 2026
  • Fedora 43 xrdp Vulnerability CVE-2025-68670 Affects Multiple Users

    A critical stack-based buffer overflow vulnerability, CVE-2025-68670, was identified in xrdp, affecting users of Fedora 43. This vulnerability arises from improper bounds checking of domain string length, which could…

    3 articles · Updated February 8, 2026

Recent Intelligence Reports

  • Fedora 44 xrdp Critical 10 Vulnerability Fixes 2026 — Linuxsecurity · July 16, 2026
  • Ubuntu 25.10 xrdp Critical DoS Arbitrary Code Vuln USN-8476 — Linuxsecurity · June 25, 2026
  • Fedora 44 xrdp Critical Security Update CVE-2026-32105 2026 — Linuxsecurity · April 28, 2026
  • Fedora 42 xrdp Remote Code Execution Denial of Service Vulnerability 2026 — Linuxsecurity · April 28, 2026
  • Mageia 9 xrdp Severe Buffer Overflow Risk MGASA-2026-0037 CVE-2025 — Linuxsecurity · February 11, 2026
  • Fedora 43 xorgxrdp Important Stack Buffer Overflow 2026 — Linuxsecurity · February 8, 2026
  • Fedora 42: Advisory on Critical Buffer Overflow Issues in freerdp — Linuxsecurity · January 21, 2026

CVSS v3.1 Breakdown