Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-26937

Опубликовано: 09 фев. 2021
Источник: debian

Описание

encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or possibly have unspecified other impact via a crafted UTF-8 character sequence.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
screenfixed4.8.0-5package

Примечания

  • https://lists.gnu.org/archive/html/screen-devel/2021-02/msg00000.html

  • https://www.openwall.com/lists/oss-security/2021/02/09/3

  • https://savannah.gnu.org/bugs/?60030

  • First patch applied in -4, but revised patch applied in -5 which fixed regressions

Связанные уязвимости

CVSS3: 9.8
ubuntu
почти 5 лет назад

encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or possibly have unspecified other impact via a crafted UTF-8 character sequence.

CVSS3: 9.6
redhat
почти 5 лет назад

encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or possibly have unspecified other impact via a crafted UTF-8 character sequence.

CVSS3: 9.8
nvd
почти 5 лет назад

encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or possibly have unspecified other impact via a crafted UTF-8 character sequence.

CVSS3: 9.8
msrc
около 4 лет назад

encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or possibly have unspecified other impact via a crafted UTF-8 character sequence.

suse-cvrf
почти 5 лет назад

Security update for screen