rdesktop versions up to and including v1.8.3 contain an Integer Underflow that leads to a Heap-Based Buffer Overflow in the function lspci_process() and results in memory corruption and probably even a remote code execution.
References
Configurations
Information
Published : 2019-03-15 11:29
Updated : 2019-03-21 09:00
NVD link : CVE-2018-20179
Mitre link : CVE-2018-20179
JSON object : View
CWE
CWE-191
Integer Underflow (Wrap or Wraparound)
Products Affected
rdesktop
- rdesktop