Ltsp develops the Linux Terminal Server Project, a thin-client infrastructure platform designed to enable centralized desktop delivery and resource management across networked systems. The observed vulnerability patterns center on the core LDM component and reflect the classification challenges inherent to disclosures against specialized enterprise infrastructure with limited public visibility. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ltsp over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-20373HIGH LTSP LDM through 2.18.06 allows fat-client root access because the LDM_USERNAME variable may have an empty value if the user's shell lacks support for Bourne shell syntax. This is | Jan 9, 2020 | 7.8 | 24 | NO | NO |
CVE-2008-1293MEDIUM ldm in Linux Terminal Server Project (LTSP) 0.99 and 2 passes the -ac option to the X server on each LTSP client, which allows remote attackers to connect to this server via TCP po | Apr 29, 2008 | 4.8 | 16 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ltsp.
Media articles that mention a CVE ID that affects a product developed by Ltsp — matched by CVE ID, not by vendor name.