Medium severity5.9NVD Advisory· Published Jul 5, 2021· Updated Jun 17, 2026
CVE-2021-36158
CVE-2021-36158
Description
In the xrdp package (in branches through 3.14) for Alpine Linux, RDP sessions are vulnerable to man-in-the-middle attacks because pre-generated RSA certificates and private keys are used.
Affected products
3- Alpine Linux/xrdp packagedescription
- Range: <3.14
Patches
Vulnerability mechanics
References
1- gitlab.alpinelinux.org/alpine/aports/-/issues/12811nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.