PT-2019-1912 · Rdesktop+2 · Rdesktop+2
Eyal Itkin
·
Published
2019-01-16
·
Updated
2024-06-15
·
CVE-2018-20175
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
rdesktop versions up to and including v1.8.3
Description
The issue is related to an out-of-bounds read in the rdesktop RDP client, specifically in the mcs.c file. This can be exploited by a remote attacker to cause a denial of service. The problem arises from integer signedness errors that lead to out-of-bounds reads, resulting in a segfault.
Recommendations
For rdesktop versions up to and including v1.8.3, consider disabling the affected functionality in the mcs.c file as a temporary workaround until a patch is available. Restrict access to the rdesktop service to minimize the risk of exploitation.
Exploit
Fix
DoS
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Suse
Rdesktop