[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2026-41252":6},{"stargazers_count":4,"fetched_at":5},7,"2026-07-21T09:16:04.996Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":24,"aliases":25,"duplicate_of":9,"upstream":26,"downstream":27,"duplicates":32,"related":33,"reserved_at":9,"published_at":34,"modified_at":35,"state":36,"summary":37,"references_raw":44,"kevs":55,"epss":9,"epss_history":56,"metrics":57,"affected":62},"CVE-2026-41252","xrdp is an open source RDP server. Versions 0.10.6 and prior contain a missing bounds check in xrdp, which allows a heap-based buffer overflow when operating in vnc-any mode. The issue occurs during the handling of RFB protocol color map messages from a VNC server, where incoming color indices are not properly validated. A malicious VNC server can exploit this flaw by sending crafted messages with out-of-range values, leading to an out-of-bounds write on the heap. This memory corruption can result in a denial of service (DoS) or potentially allow remote code execution (RCE) prior to authentication. This issue has been fixed in version 0.10.6.1.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-122","Heap-based Buffer Overflow","A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().","weakness","Draft","Variant","High",[20],{"id":21,"name":22,"techniques":23},"CAPEC-92","Forced Integer Overflow",[],[],[],[],[28,30],{"_key":29},"UBUNTU-CVE-2026-41252",{"_key":31},"DEBIAN-CVE-2026-41252",[],[],"2026-07-20T16:29:53.496Z","2026-07-20T18:00:29.676Z","PUBLISHED",{"cisa_kev":38,"cisa_ransomware":38,"cisa_vendor":9,"epss_severity":9,"epss_score":9,"severity":39,"severity_score":40,"severity_version":41,"severity_source":42,"severity_vector":43,"severity_status":36},false,"critical",9.8,"v3.1","cve.org","CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",[45,50],{"url":46,"sources":47,"tags":48},"https://github.com/neutrinolabs/xrdp/security/advisories/GHSA-w5vg-6qmv-j63j",[42],[49],"X Refsource CONFIRM",{"url":51,"sources":52,"tags":53},"https://github.com/neutrinolabs/xrdp/releases/tag/v0.10.6.1",[42],[54],"X Refsource MISC",[],[],[58],{"source":42,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":59,"cvss_v4_0":9},{"baseScore":40,"baseSeverity":60,"vectorString":43,"impactScore":40,"exploitabilityScore":61},"CRITICAL",10,[63],{"ecosystem":9,"name":64,"vendor":65,"product":64,"cpe_part":66,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":67},"xrdp","neutrinolabs","a",[68],{"version":69,"is_range":70,"range_type":42,"version_start":9,"version_start_type":9,"version_end":71,"version_end_type":72,"fixed_in":9},"\u003C 0.10.6.1",true,"0.10.6.1","excluding"]