Rdesktop Rdesktop

Do you want an email whenever new security vulnerabilities are reported in Rdesktop?

By the Year

In 2024 there have been 0 vulnerabilities in Rdesktop . Rdesktop did not have any published security vulnerabilities last year.

Year Vulnerabilities Average Score
2024 0 0.00
2023 0 0.00
2022 0 0.00
2021 0 0.00
2020 0 0.00
2019 20 8.65
2018 0 0.00

It may take a day or so for new Rdesktop vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Rdesktop Security Vulnerabilities

RDesktop version 1.8.4 contains multiple out-of-bound access read vulnerabilities in its code

CVE-2019-15682 7.5 - High - October 30, 2019

RDesktop version 1.8.4 contains multiple out-of-bound access read vulnerabilities in its code, which results in a denial of service (DoS) condition. This attack appear to be exploitable via network connectivity. These issues have been fixed in version 1.8.5

Out-of-bounds Read

rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in the function ui_clip_handle_data()

CVE-2018-20174 7.5 - High - March 15, 2019

rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in the function ui_clip_handle_data() that results in an information leak.

Out-of-bounds Read

rdesktop versions up to and including v1.8.3 contain a Buffer Overflow over the global variables in the function seamless_process_line()

CVE-2018-20182 9.8 - Critical - March 15, 2019

rdesktop versions up to and including v1.8.3 contain a Buffer Overflow over the global variables in the function seamless_process_line() that results in memory corruption and probably even a remote code execution.

Buffer Overflow

rdesktop versions up to and including v1.8.3 contain an Integer Underflow

CVE-2018-20181 9.8 - Critical - March 15, 2019

rdesktop versions up to and including v1.8.3 contain an Integer Underflow that leads to a Heap-Based Buffer Overflow in the function seamless_process() and results in memory corruption and probably even a remote code execution.

Memory Corruption

rdesktop versions up to and including v1.8.3 contain an Integer Underflow

CVE-2018-20180 9.8 - Critical - March 15, 2019

rdesktop versions up to and including v1.8.3 contain an Integer Underflow that leads to a Heap-Based Buffer Overflow in the function rdpsnddbg_process() and results in memory corruption and probably even a remote code execution.

Integer underflow

rdesktop versions up to and including v1.8.3 contain an Integer Underflow

CVE-2018-20179 9.8 - Critical - March 15, 2019

rdesktop versions up to and including v1.8.3 contain an Integer Underflow that leads to a Heap-Based Buffer Overflow in the function lspci_process() and results in memory corruption and probably even a remote code execution.

Integer underflow

rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in the function process_demand_active()

CVE-2018-20178 7.5 - High - March 15, 2019

rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in the function process_demand_active() that results in a Denial of Service (segfault).

Out-of-bounds Read

rdesktop versions up to and including v1.8.3 contain an Integer Overflow

CVE-2018-20177 9.8 - Critical - March 15, 2019

rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to a Heap-Based Buffer Overflow in the function rdp_in_unistr() and results in memory corruption and possibly even a remote code execution.

Memory Corruption

rdesktop versions up to and including v1.8.3 contain several Out-Of- Bounds Reads in the file secure.c

CVE-2018-20176 7.5 - High - March 15, 2019

rdesktop versions up to and including v1.8.3 contain several Out-Of- Bounds Reads in the file secure.c that result in a Denial of Service (segfault).

Out-of-bounds Read

rdesktop versions up to and including v1.8.3 contains several Integer Signedness errors

CVE-2018-20175 7.5 - High - March 15, 2019

rdesktop versions up to and including v1.8.3 contains several Integer Signedness errors that lead to Out-Of-Bounds Reads in the file mcs.c and result in a Denial of Service (segfault).

Out-of-bounds Read

rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function rdpdr_process()

CVE-2018-8791 7.5 - High - February 05, 2019

rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function rdpdr_process() that results in an information leak.

Out-of-bounds Read

rdesktop versions up to and including v1.8.3 contain a Heap-Based Buffer Overflow in function ui_clip_handle_data()

CVE-2018-8800 9.8 - Critical - February 05, 2019

rdesktop versions up to and including v1.8.3 contain a Heap-Based Buffer Overflow in function ui_clip_handle_data() that results in a memory corruption and probably even a remote code execution.

Buffer Overflow

rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function process_secondary_order()

CVE-2018-8799 7.5 - High - February 05, 2019

rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function process_secondary_order() that results in a Denial of Service (segfault).

Out-of-bounds Read

rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function rdpsnd_process_ping()

CVE-2018-8798 7.5 - High - February 05, 2019

rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function rdpsnd_process_ping() that results in an information leak.

Out-of-bounds Read

rdesktop versions up to and including v1.8.3 contain a Heap-Based Buffer Overflow in function process_plane()

CVE-2018-8797 9.8 - Critical - February 05, 2019

rdesktop versions up to and including v1.8.3 contain a Heap-Based Buffer Overflow in function process_plane() that results in a memory corruption and probably even a remote code execution.

Buffer Overflow

rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function process_bitmap_updates()

CVE-2018-8796 7.5 - High - February 05, 2019

rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function process_bitmap_updates() that results in a Denial of Service (segfault).

Out-of-bounds Read

rdesktop versions up to and including v1.8.3 contain an Integer Overflow

CVE-2018-8795 9.8 - Critical - February 05, 2019

rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to a Heap-Based Buffer Overflow in function process_bitmap_updates() and results in a memory corruption and probably even a remote code execution.

Integer Overflow or Wraparound

rdesktop versions up to and including v1.8.3 contain an Integer Overflow

CVE-2018-8794 9.8 - Critical - February 05, 2019

rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to an Out-Of-Bounds Write in function process_bitmap_updates() and results in a memory corruption and possibly even a remote code execution.

Integer Overflow or Wraparound

rdesktop versions up to and including v1.8.3 contain a Heap-Based Buffer Overflow in function cssp_read_tsrequest()

CVE-2018-8793 9.8 - Critical - February 05, 2019

rdesktop versions up to and including v1.8.3 contain a Heap-Based Buffer Overflow in function cssp_read_tsrequest() that results in a memory corruption and probably even a remote code execution.

Buffer Overflow

rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function cssp_read_tsrequest()

CVE-2018-8792 7.5 - High - February 05, 2019

rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function cssp_read_tsrequest() that results in a Denial of Service (segfault).

Out-of-bounds Read

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Debian Linux or by Rdesktop? Click the Watch button to subscribe.

Rdesktop
Vendor

Rdesktop
Product

subscribe