PT-2000-1417 · Rxvt+2 · Rxvt+2
Publicado
2000-06-01
·
Atualizado
2024-06-10
·
CVE-2000-0476
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
xterm versions (affected versions not specified)
Eterm versions (affected versions not specified)
rxvt versions (affected versions not specified)
Description
The issue allows an attacker to cause a denial of service by embedding certain escape characters, which force the window to be resized.
Recommendations
For xterm, consider restricting the use of escape characters to minimize the risk of exploitation.
For Eterm, avoid using the affected escape characters until the issue is resolved.
For rxvt, as a temporary workaround, consider disabling the resizing feature based on escape characters until a patch is available.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Eterm
Rxvt
Xterm