CVE-2008-1802

Publication date 12 May 2008

Last updated 24 July 2024


Ubuntu priority

Buffer overflow in the process_redirect_pdu (rdp.c) function in rdesktop 1.5.0 allows remote attackers to execute arbitrary code via a Remote Desktop Protocol (RDP) redirect request with modified length fields.

Read the notes from the security team

Status

Package Ubuntu Release Status
rdesktop 8.04 LTS hardy
Fixed 1.5.0-3+cvs20071006ubuntu0.1
7.10 gutsy
Fixed 1.5.0-2ubuntu0.1
7.04 feisty
Fixed 1.5.0-1ubuntu1.1
6.06 LTS dapper
Not affected

Notes


jdstrand

1.5 only

Patch details

For informational purposes only. We recommend not to cherry-pick updates. How can I get the fixes?

Package Patch details
rdesktop

References

Related Ubuntu Security Notices (USN)

    • USN-646-1
    • rdesktop vulnerabilities
    • 18 September 2008

Other references