|
|
| |
|
| |
mosh: denial of service
| Package(s): | mosh |
CVE #(s): | CVE-2012-2385
|
| Created: | June 26, 2012 |
Updated: | April 10, 2013 |
| Description: |
From the Red Hat bugzilla:
A denial of service flaw was found in the way mosh, a remote terminal application, performed processing of parameters that have been passed to the terminal in the terminal dispatcher class (previously there was no limit for the count of parameters, which were allowed to be passed to the dispatcher). A remote attacker could use this flaw to cause a denial of service (mosh server to enter long for loop when trying to process the parameters) via specially-crafted escape sequence string. |
| Alerts: |
|
( Log in to post comments)
|
|
|