Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2011-1595

Disclosure Date: May 24, 2011 (last updated October 04, 2023)
Directory traversal vulnerability in the disk_create function in disk.c in rdesktop before 1.7.0, when disk redirection is enabled, allows remote RDP servers to read or overwrite arbitrary files via a .. (dot dot) in a pathname.
0
Attacker Value
Unknown

CVE-2008-1803

Disclosure Date: May 12, 2008 (last updated October 04, 2023)
Integer signedness error in the xrealloc function (rdesktop.c) in RDesktop 1.5.0 allows remote attackers to execute arbitrary code via unknown parameters that trigger a heap-based overflow. NOTE: the role of the channel_process function was not specified by the original researcher.
0
Attacker Value
Unknown

CVE-2008-1802

Disclosure Date: May 12, 2008 (last updated October 04, 2023)
Buffer overflow in the process_redirect_pdu (rdp.c) function in rdesktop 1.5.0 allows remote attackers to execute arbitrary code via a Remote Desktop Protocol (RDP) redirect request with modified length fields.
0
Attacker Value
Unknown

CVE-2008-1801

Disclosure Date: May 12, 2008 (last updated October 04, 2023)
Integer underflow in the iso_recv_msg function (iso.c) in rdesktop 1.5.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a Remote Desktop Protocol (RDP) request with a small length field.
0