CVE-2008-1801: Critical severity ubuntu desktop file utils vulnerability
Published May 12, 2008
·Updated
Integer underflow in the isorecvmsg function (iso.c) in rdesktop 1.5.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a Remote Desktop Protocol (RDP) request with a small length field.
Affected Software
1 affected component
rdesktop RDesktop=1.5.0
Event History
May 12, 2008
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-1801?
CVE-2008-1801 has a severity rating that indicates it may lead to significant denial of service and potentially arbitrary code execution.
2
How do I fix CVE-2008-1801?
To fix CVE-2008-1801, upgrade to a version of rdesktop that has patched the vulnerability.
3
What type of attack does CVE-2008-1801 enable?
CVE-2008-1801 enables remote attackers to cause a denial of service crash and may lead to arbitrary code execution.
4
Which software is affected by CVE-2008-1801?
CVE-2008-1801 specifically affects rdesktop version 1.5.0.
5
What is the cause of the vulnerability in CVE-2008-1801?
The cause of CVE-2008-1801 is an integer underflow in the iso_recv_msg function within rdesktop.