Integer underflow in the iso_recv_msg function (iso.c) in rdesktop 1.5.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a Remote Desktop Protocol (RDP) request with a small length field.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Rdesktop | Rdesktop | 1.5.0 (including) | 1.5.0 (including) |
Red Hat Enterprise Linux 3 | RedHat | rdesktop-0:1.2.0-3 | * |
Red Hat Enterprise Linux 4 | RedHat | rdesktop-0:1.3.1-9 | * |
Red Hat Enterprise Linux 5 | RedHat | rdesktop-0:1.4.1-6 | * |
Rdesktop | Ubuntu | dapper | * |
Rdesktop | Ubuntu | feisty | * |
Rdesktop | Ubuntu | gutsy | * |
Rdesktop | Ubuntu | hardy | * |
Rdesktop | Ubuntu | upstream | * |