Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-9366

Опубликовано: 24 фев. 2020
Источник: debian
EPSS Низкий

Описание

A buffer overflow was found in the way GNU Screen before 4.8.0 treated the special escape OSC 49. Specially crafted output, or a special program, could corrupt memory and crash Screen or possibly have unspecified other impact.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
screenfixed4.8.0-1package
screennot-affectedbusterpackage
screennot-affectedstretchpackage
screennot-affectedjessiepackage

Примечания

  • https://lists.gnu.org/archive/html/screen-devel/2020-02/msg00007.html

  • https://www.openwall.com/lists/oss-security/2020/02/06/3

  • Fixed by: https://git.savannah.gnu.org/cgit/screen.git/commit/?id=68386dfb1fa33471372a8cd2e74686758a2f527b (v4.8.0)

  • Follow-up: https://git.savannah.gnu.org/cgit/screen.git/commit/?id=0dd53533e20d2948351a99ec5336fbc9b82b226a (v4.8.0)

  • Introduced due to: https://git.savannah.gnu.org/cgit/screen.git/commit/?id=c5db181b6e017cfccb8d7842ce140e59294d9f62 (v4.7.0)

EPSS

Процентиль: 72%
0.00729
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
почти 6 лет назад

A buffer overflow was found in the way GNU Screen before 4.8.0 treated the special escape OSC 49. Specially crafted output, or a special program, could corrupt memory and crash Screen or possibly have unspecified other impact.

CVSS3: 6.1
redhat
около 6 лет назад

A buffer overflow was found in the way GNU Screen before 4.8.0 treated the special escape OSC 49. Specially crafted output, or a special program, could corrupt memory and crash Screen or possibly have unspecified other impact.

CVSS3: 9.8
nvd
почти 6 лет назад

A buffer overflow was found in the way GNU Screen before 4.8.0 treated the special escape OSC 49. Specially crafted output, or a special program, could corrupt memory and crash Screen or possibly have unspecified other impact.

github
больше 3 лет назад

A buffer overflow was found in the way GNU Screen before 4.8.0 treated the special escape OSC 49. Specially crafted output, or a special program, could corrupt memory and crash Screen or possibly have unspecified other impact.

EPSS

Процентиль: 72%
0.00729
Низкий