Vulnerabilities > Rdesktop > Critical

DATE CVE VULNERABILITY TITLE RISK
2019-03-15 CVE-2018-20177 Integer Overflow or Wraparound vulnerability in multiple products
rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to a Heap-Based Buffer Overflow in the function rdp_in_unistr() and results in memory corruption and possibly even a remote code execution.
network
low complexity
rdesktop debian opensuse CWE-190
critical
9.8
2008-05-12 CVE-2008-1803 Numeric Errors vulnerability in Rdesktop 1.5.0
Integer signedness error in the xrealloc function (rdesktop.c) in RDesktop 1.5.0 allows remote attackers to execute arbitrary code via unknown parameters that trigger a heap-based overflow.
network
rdesktop CWE-189
critical
9.3
2008-05-12 CVE-2008-1802 Buffer Errors vulnerability in Rdesktop 1.5.0
Buffer overflow in the process_redirect_pdu (rdp.c) function in rdesktop 1.5.0 allows remote attackers to execute arbitrary code via a Remote Desktop Protocol (RDP) redirect request with modified length fields.
network
rdesktop CWE-119
critical
9.3
2008-05-12 CVE-2008-1801 Numeric Errors vulnerability in Rdesktop 1.5.0
Integer underflow in the iso_recv_msg function (iso.c) in rdesktop 1.5.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a Remote Desktop Protocol (RDP) request with a small length field.
network
rdesktop CWE-189
critical
9.3