Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-90773

Опубликовано: 13 сент. 2026
Источник: debian
EPSS Низкий

Описание

procs through 0.14.12 fails to sanitize escape sequences in process command lines before displaying them in the Command column. Local attackers can execute processes with malicious ANSI or OSC escape sequences in their command line arguments, which are written unmodified to other users' terminals for interpretation by terminal emulators.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
rust-procsunfixedpackage
rust-procsno-dsatrixiepackage

Примечания

  • https://github.com/dalance/procs/issues/950

  • Fixed by: https://github.com/dalance/procs/commit/2698608d43011acba088def62a2bd6653c302c44

EPSS

Процентиль: 1%
0.00105
Низкий

Связанные уязвимости

CVSS3: 3.2
ubuntu
4 дня назад

procs through 0.14.12 fails to sanitize escape sequences in process command lines before displaying them in the Command column. Local attackers can execute processes with malicious ANSI or OSC escape sequences in their command line arguments, which are written unmodified to other users' terminals for interpretation by terminal emulators.

CVSS3: 3.2
nvd
4 дня назад

procs through 0.14.12 fails to sanitize escape sequences in process command lines before displaying them in the Command column. Local attackers can execute processes with malicious ANSI or OSC escape sequences in their command line arguments, which are written unmodified to other users' terminals for interpretation by terminal emulators.

CVSS3: 3.2
github
4 дня назад

procs through 0.14.12 fails to sanitize escape sequences in process command lines before displaying them in the Command column. Local attackers can execute processes with malicious ANSI or OSC escape sequences in their command line arguments, which are written unmodified to other users' terminals for interpretation by terminal emulators.

EPSS

Процентиль: 1%
0.00105
Низкий