vulnerability

FreeBSD: VID-5b2eac07-8b4d-11ed-8b23-a0f3c100ae18 (CVE-2022-4170): rxvt-unicode is vulnerable to a remote code execution

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Jan 3, 2023
Added
Jan 9, 2023
Modified
Dec 10, 2025

Description

Marc Lehmann reports: The biggest issue is resolving CVE-2022-4170, which allows command execution inside urxvt from within the terminal (that means anything that can output text in the terminal can start commands in the context of the urxvt process, even remotely).

Solution

freebsd-upgrade-package-rxvt-unicode
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.