Oval Definition:oval:com.redhat.rhsa:def:20080575
Revision Date:2008-07-24Version:638
Title:RHSA-2008:0575: rdesktop security update (Moderate)
Description:rdesktop is an open source client for Microsoft Windows NT Terminal Server and Microsoft Windows 2000 and 2003 Terminal Services, capable of natively using the Remote Desktop Protocol (RDP) to present the user's NT desktop. No additional server extensions are required.

  • An integer underflow and integer signedness issue were discovered in the rdesktop. If an attacker could convince a victim to connect to a malicious RDP server, the attacker could cause the victim's rdesktop to crash or, possibly, execute an arbitrary code. (CVE-2008-1801, CVE-2008-1803)

    Users of rdesktop should upgrade to these updated packages, which contain a backported patches to resolve these issues.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2008-1801
    CVE-2008-1803
    RHSA-2008:0575
    RHSA-2008:0575-01
    RHSA-2008:0575-01
    Platform(s):Red Hat Enterprise Linux 5
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 5 is installed
  • AND rdesktop is earlier than 0:1.4.1-6
  • AND rdesktop is signed with Red Hat redhatrelease2 key
  • BACK