xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP).
xrdp < v0.9.21 contain a buffer over flow in devredir_proc_client_devlist_announce_req() function. There are no known workarounds for this issue. Users are advised to upgrade..This CVE has a CVSS3.1 score of 9.1 and a Base Severity of CRITICAL.
References for CVE-2022-23480 :
|Metric Type||Metric Score|