Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2023-42822

20
FAUCET Score

CVE-2023-42822 is an out-of-bounds read vulnerability in xrdp, an open-source remote desktop protocol server, affecting fedoraproject and neutrinolabs xrdp versions. The vulnerability stems from a lack of bounds checking when accessing font glyphs, allowing a malicious user to trigger an out-of-bounds read within a potentially privileged process, especially on non-Debian systems where xrdp often runs as root. With a CVSS score of 6.5 (Medium), it can be exploited remotely with low attack complexity and no user interaction, potentially leading to high confidentiality impact. There is currently no evidence of active exploitation, public exploit code, or significant community discussion, and it is not listed in CISA's KEV catalog.

Impacted Technologies

VendorProductVersion(s)CPE
< 0.9.23.1CPE matchmatch criteria
cpe:2.3:a:neutrinolabs:xrdp:*:*:*:*:*:*:*:*
37CPE matchmatch criteria
cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*
38CPE matchmatch criteria
cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

4.6MEDIUM

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
LOW
Integrity Impact
LOW
Availability Impact
NONE
Exploitability Score
2.1
Impact Score
2.5
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.63%
Probability of exploitation in next 30 days
EPSS Percentile
46.6%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0063 is in the 57th percentile among its peer group of 21,977 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (6)

github_advisorypatch availablevia nvd_reference
View patch
ubuntupatch availablevia ubuntu_usn
Product: xrdp (bionic)Fixed in: 0.9.5-2ubuntu0.1~esm3
ubuntupatch availablevia ubuntu_usn
Product: xrdp (focal)Fixed in: 0.9.12-1ubuntu0.1+esm2
ubuntupatch availablevia ubuntu_usn
Product: xrdp (jammy)Fixed in: 0.9.17-2ubuntu3+esm2
ubuntupatch availablevia ubuntu_usn
Product: xrdp (noble)Fixed in: 0.9.24-4ubuntu0.1~esm1
ubuntupatch availablevia ubuntu_usn
Product: xrdp (questing)Fixed in: 0.10.1-3.1+deb13u1build0.25.10.1

Vendor Advisories (1)

ubuntuUSN-8476-1

xrdp vulnerabilities

Jun 25, 2026

References

lists.debian.org / debian-lts-announce/2025/05/msg00018.html
github.com / neutrinolabs/xrdp/commit/73acbe1f7957c65122b00de4d6f57a8d0d257c40
Patch
github.com / neutrinolabs/xrdp/security/advisories/GHSA-2hjx-rm4f-r9hw
Vendor Advisory
lists.fedoraproject.org / archives/list/[email protected]/message/5FPGA4M7IYCP7OILDF2ZJEVSXUOFEFQ6
Release Notes
lists.fedoraproject.org / archives/list/[email protected]/message/PFGL22QQF65OIZRMCKUZCVJQCKGUBRYE
Mailing ListRelease Notes
lists.fedoraproject.org / archives/list/[email protected]/message/RTXODUR4ILM7ZPA6ZGY6VSK4BBSBMKGY
Mailing ListRelease Notes