cbcvebase.

Debian Rdesktop vulnerabilities

24 known vulnerabilities affecting debian/rdesktop.

Total CVEs
24
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
CRITICAL13HIGH10LOW1

Vulnerabilities

Page 2 of 2
CVE-2018-8792P3HIGHCVSS 7.5fixed in rdesktop 1.8.4-1 (bookworm)2018
CVE-2018-8792 [HIGH] CVE-2018-8792: rdesktop - rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in fu... rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function cssp_read_tsrequest() that results in a Denial of Service (segfault). Scope: local bookworm: resolved (fixed in 1.8.4-1) bullseye: resolved (fixed in 1.8.4-1) forky: resolved (fixed in 1.8.4-1) sid: resolved (fixed in 1.8.4-1) trixie: resolved (fixed in 1.8.4-1)
debian
CVE-2018-20176P3HIGHCVSS 7.5fixed in rdesktop 1.8.4-1 (bookworm)2018
CVE-2018-20176 [HIGH] CVE-2018-20176: rdesktop - rdesktop versions up to and including v1.8.3 contain several Out-Of- Bounds Read... rdesktop versions up to and including v1.8.3 contain several Out-Of- Bounds Reads in the file secure.c that result in a Denial of Service (segfault). Scope: local bookworm: resolved (fixed in 1.8.4-1) bullseye: resolved (fixed in 1.8.4-1) forky: resolved (fixed in 1.8.4-1) sid: resolved (fixed in 1.8.4-1) trixie: resolved (fixed in 1.8.4-1)
debian
CVE-2019-15682P3HIGHCVSS 7.5fixed in rdesktop 1.8.6-1 (bookworm)2019
CVE-2019-15682 [HIGH] CVE-2019-15682: rdesktop - RDesktop version 1.8.4 contains multiple out-of-bound access read vulnerabilitie... RDesktop version 1.8.4 contains multiple out-of-bound access read vulnerabilities in its code, which results in a denial of service (DoS) condition. This attack appear to be exploitable via network connectivity. These issues have been fixed in version 1.8.5 Scope: local bookworm: resolved (fixed in 1.8.6-1) bullseye: resolved (fixed in 1.8.6-1) forky: resolved (fix
debian
CVE-2011-1595P4LOWCVSS 4.3fixed in rdesktop 1.7.0-1 (bookworm)2011
CVE-2011-1595 [MEDIUM] CVE-2011-1595: rdesktop - Directory traversal vulnerability in the disk_create function in disk.c in rdesk... Directory traversal vulnerability in the disk_create function in disk.c in rdesktop before 1.7.0, when disk redirection is enabled, allows remote RDP servers to read or overwrite arbitrary files via a .. (dot dot) in a pathname. Scope: local bookworm: resolved (fixed in 1.7.0-1) bullseye: resolved (fixed in 1.7.0-1) forky: resolved (fixed in 1.7.0-1) sid: resolved
debian
Debian Rdesktop vulnerabilities | cvebase