CVE-2008-1801

rdesktop <1.5.0 - DoS/RCE

Title source: llm

Description

Integer underflow in the iso_recv_msg function (iso.c) in rdesktop 1.5.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a Remote Desktop Protocol (RDP) request with a small length field.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Guido Landi · perldoslinux
https://www.exploit-db.com/exploits/5561

References (29)

... and 9 more

Scores

EPSS 0.3673
EPSS Percentile 97.2%

Details

CWE
CWE-189
Status published
Products (1)
rdesktop/rdesktop 1.5.0
Published May 12, 2008
Tracked Since Feb 18, 2026