
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2026-55639 is an improper input validation vulnerability in xrdp's MCS data processing that can lead to a potential information leak. It affects xrdp versions through 0.10.6, with the patched version being 0.10.6.1. The flaw was discovered by researcher TristanInSec and published on July 2, 2026, via a GitHub Security Advisory. It carries a CVSS v3.1 base score of 5.3 (Moderate) (GitHub Advisory).
The root cause is an out-of-bounds read (CWE-125) in xrdp's parser for Client Security Data within the Client MCS Connect Initial PDU with GCC Conference Create Request, processed during the RDP connection sequence. The parser fails to perform sufficient length validation on the incoming data block, allowing a remote, unauthenticated attacker to send a specially crafted RDP packet with malformed data. Due to missing bounds checks, the xrdp process may read a small number of bytes beyond the declared data block boundary, potentially exposing process memory contents (GitHub Advisory).
Successful exploitation results in a low-severity confidentiality impact — specifically, a small number of bytes of xrdp process memory may be disclosed to an unauthenticated remote attacker. There is no impact to integrity or availability. While the leaked memory content alone may be limited, it could potentially be chained with other vulnerabilities to facilitate further attacks (GitHub Advisory).
The xrdp project has released version 0.10.6.1 as the patched release addressing this vulnerability. Administrators should upgrade to xrdp 0.10.6.1 or later as the primary remediation. As a temporary workaround where upgrading is not immediately possible, restricting network access to the xrdp service (TCP port 3389) via firewall rules to trusted IP ranges can reduce exposure (GitHub Advisory, Linux Security).
The vulnerability was reported by researcher TristanInSec and disclosed by xrdp maintainer metalefty via a GitHub Security Advisory on July 2, 2026. Fedora has issued security updates for xrdp addressing this issue, and coverage has appeared on Linux security news aggregators including LinuxSecurity.com and pro-linux.de (Linux Security, pro-linux.de).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."