CVE-2026-33516: Xrdp Memcpy From Stream Read Pointer
A g_memcpy()/memcpy() from an xrdp stream's read pointer ($S->p) is performed BEFORE the remaining-length check on the stream. The xrdp stream API provides bounds-aware in_uint8a()/in_uint8s() macros that must be paired with an explicit `len < $SIZE` check performed BEFORE the copy. When the check is performed AFTER the copy (as in xrdp_caps_process_codecs f
greprules fetch cve-2026-33516-xrdp-memcpy-from-stream-read-pointer --engine opengrepDescription
A g_memcpy()/memcpy() from an xrdp stream's read pointer ($S->p) is performed BEFORE the remaining-length check on the stream. The xrdp stream API provides bounds-aware in_uint8a()/in_uint8s() macros that must be paired with an explicit `len < $SIZE` check performed BEFORE the copy. When the check is performed AFTER the copy (as in xrdp_caps_process_codecs f
Community feedback
0 rule-level signals from signed-in users.
- Useful reports
- 0
- Context false positives
- 0
- Metadata suggestions
- 0
Contextual precision
Aggregated from approved scan feedback. False-positive reports describe observed scan contexts, not a global rule verdict.
- Findings observed
- 0
- Projects
- 0
- Reporters
- 0
Precision details are collecting more signed-in reports before verdict counts or ratios are emphasized.
No approved finding verdicts yet.
No scan diagnostics reported yet.