A buffer overflow was found in the way GNU Screen before 4.8.0 treated the special escape OSC 49. Specially crafted output, or a special program, could corrupt memory and crash Screen or possibly have unspecified other impact.
CVSS Details
- CVSS 3.1 Base Score: 9.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade screen | Mar 26, 2024 | Feb 24, 2020 |
| Debian | — | Upgrade screen | Jul 30, 2024 | Feb 24, 2020 |
| Gentoo Linux | — | Upgrade app-misc/screen. | Mar 31, 2020 | Feb 24, 2020 |
| Oracle Solaris | — | Upgrade terminal/screen to version 4.8.0-11.4.24.0.1.75.1 on Solaris 11.4 | Jan 19, 2021 | Feb 24, 2020 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub