USN-1136-1: rdesktop vulnerability
25 May 2011
An attacker could access your files if rdesktop connected to a malicious server.
Releases
Packages
- rdesktop - RDP client for Windows NT/2000 Terminal Server
Details
It was discovered that rdesktop incorrectly handled specially crafted
paths when using disk redirection. If a user were tricked into connecting
to a malicious server, an attacker could access arbitrary files on the
user's filesystem.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 11.04
Ubuntu 10.10
Ubuntu 10.04
In general, a standard system update will make all the necessary changes.