LWN.net Logo

screen: denial of service

Package(s):screen CVE #(s):CVE-2006-4573
Created:October 26, 2006 Updated:November 6, 2006
Description: The screen virtual terminal application has a denial of service vulnerability related to the handling of UTF-8 combining characters. If an attacker can trick a user into displaying maliciously created output, a denial of service can result. The attacker may also be able to exploit the vulnerability in order to run arbitrary software with the privileges of the user.
Alerts:
Slackware SSA:2006-307-02 2006-11-06
Gentoo 200611-01 2006-11-03
Ubuntu USN-370-1 2006-10-31
Debian DSA-1202-1 2006-10-31
Mandriva MDKSA-2006:191 2006-10-27
OpenPKG OpenPKG-SA-2006.026 2006-10-26
rPath rPSA-2006-0198-1 2006-10-26

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds