Stack-based buffer overflow in the tsc_launch_remote function (src/support.c) in Terminal Server Client (tsclient) 0.150, and possibly other versions, allows user-assisted remote attackers to execute arbitrary code via a .RDP file with a long hostname argument.
https://exchange.xforce.ibmcloud.com/vulnerabilities/65100
https://euvd.enisa.europa.eu/vulnerability/EUVD-2011-0912
http://www.securityfocus.com/bid/46099
http://www.exploit-db.com/exploits/16095