Improper Check for Dropped Privileges in xrdp - CVE-2026-32107

 

Improper Check for Dropped Privileges in xrdp - CVE-2026-32107

Published: April 17, 2026


Vulnerability identifier: #VU126463
CSH Severity: Low
CVSS v4: 8.5 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-32107
CWE-ID: CWE-273
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to escalate privileges to root and execute arbitrary code.

The vulnerability exists due to improper check for dropped privileges in the session execution component when handling an error during the privilege drop process. A local user can trigger the flawed privilege drop handling to escalate privileges to root and execute arbitrary code.

Exploitation requires an additional exploit to facilitate the attack.


Affected software

xrdp
Debian Linux
Fedora
Anolis OS
xrdp (Debian package)
xrdp
xrdp-devel
xrdp-selinux
xrdp-doc

How to mitigate CVE-2026-32107

Install security update from vendor's website.

xrdp - update to 0.10.6
xrdp (Debian package) - update to 0.10.1-3.1+deb13u2
xrdp - update to 0.10.6-1
xrdp-devel - update to 0.10.6-1
xrdp-selinux - update to 0.10.6-1
xrdp-doc - update to 0.10.6-1
xrdp - addressed in versions 0.10.6-1.el8, 0.10.6-1.el9, 0.10.6-1.fc42, 0.10.6-1.fc43, 0.10.6-1.fc44

External References

Related Security Bulletins