Lucene search

K
osvGoogleOSV:CVE-2022-23468
HistoryDec 09, 2022 - 6:15 p.m.

CVE-2022-23468

2022-12-0918:15:13
Google
osv.dev
6
xrdp
buffer overflow
login
upgrade
software
security issue
remote desktop protocol

AI Score

9.5

Confidence

High

EPSS

0.002

Percentile

57.6%

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP).
xrdp < v0.9.21 contain a buffer over flow in xrdp_login_wnd_create() function. There are no known workarounds for this issue. Users are advised to upgrade.