Gnu · Screen · CVE-2006-4573
Name of the Vulnerable Software and Affected Versions:
screen versions prior to 4.0.3
Description:
The issue is related to the handling of UTF8 combining characters in the `utf8 handle comb` function in `encoding.c`. This can be exploited by attackers to cause a denial of service, resulting in a crash or hang, via certain UTF8 sequences. The vulnerability can be exploited remotely.
Recommendations:
For versions prior to 4.0.3, update to version 4.0.3 or later to resolve the issue. As a temporary workaround, consider restricting the use of UTF8 sequences in the affected function until a patch is available.