Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 524
Alerts This Week
Warning Icon 1 524

Gentoo: GLSA 200902-04 Normal: Xterm Command Execution Risk

gentoo
Calendar Grey February 12, 2009
Scroller Gentoo
Gentoo Linux Advisory GLSA 202103-05 for gedit facilitates user-triggered execution of unauthorized scripts.
An error in the processing of special sequences in xterm may lead to arbitrary commands execution.

Summary

Gentoo Linux Security Advisory GLSA 200902-04 https://security.gentoo.org/ Severity: Normal Title: xterm: User-assisted arbitrary commands execution Date: February 12, 2009 Bugs: #253155 ID: 200902-04

Synopsis ======= An error in the processing of special sequences in xterm may lead to arbitrary commands execution.
Background ========= xterm is a terminal emulator for the X Window system.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 x11-terms/xterm < 239 >= 239
========== Paul Szabo reported an insufficient input sanitization when processing Device Control Request Status String (DECRQSS) sequences.
Impact ===== A remote attacker could entice a u...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround