>> rdesktop Multiple Code Execution and Denial of Service Vulnerabilities
Title : rdesktop Multiple Code Execution and Denial of Service Vulnerabilities VUPEN ID : VUPEN/ADV-2008-1467 CVE ID : CVE-2008-1801 - CVE-2008-1802 - CVE-2008-1803
Rated as : High Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-05-09
Technical Description
Multiple vulnerabilities have been identified in rdesktop, which could be exploited by attackers to cause a denial of service or execute arbitrary code. These issues are caused by integer and buffer overflow errors in the "iso.c", "rdp.c" and "rdesktop.c" files when processing malformed data, which could be exploited by attackers to crash an affected application or compromise a vulnerable system.