漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
xrdp: Pre-auth infinite loop via totalLength=0 in TS_SHARECONTROLHEADER
Vulnerability Description
xrdp is an open source RDP server. In versions 0.10.6 and prior, a n issue was discovered where the software fails to properly validate the totalLength field within the RDP protocol control header during packet reception. An unauthenticated remote attacker can exploit this vulnerability by sending a specially crafted packet that forces the xrdp process or thread into an infinite, CPU-bound loop. Because the internal pointer fails to advance and the deadlock prevention mechanism is bypassed for specific protocol data unit types, the process consumes excessive CPU resources indefinitely. This can render the xrdp service unavailable and potentially lead to system-wide resource exhaustion if multiple malicious connections are established. This issue has been fixed in version 0.10.6.1.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Vulnerability Type
不可达退出条件的循环(无限循环)
Vulnerability Title
neutrinolabs xrdp 资源管理错误漏洞
Vulnerability Description
neutrinolabs xrdp是neutrinolabs团队开源的一款开源远程桌面协议服务器。 neutrinolabs xrdp 0.10.6及之前版本存在资源管理错误漏洞,该漏洞源于软件在接收数据包时未能正确验证RDP协议控制报头中的totalLength字段,可能导致未经身份验证的远程攻击者发送特制数据包,强制xrdp进程或线程进入无限CPU密集型循环,消耗过多CPU资源,导致服务不可用,甚至多恶意连接时系统级资源耗尽。
CVSS Information
N/A
Vulnerability Type
N/A