Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Mageia: 2021-0109 Moderate: Screen Denial Of Service and Code Execution

mageia
Calendar Grey March 4, 2021
Dist Mageia Esm H88
Patch release addresses CVE-2021-26937 to mitigate risks of service interruption and malicious code execution.
Felix Weinmann reported a flaw in the handling of combining characters in screen, which can result in denial of service, or potentially the execution of arbitrary code via a specia...

Summary

Felix Weinmann reported a flaw in the handling of combining characters in screen, which can result in denial of service, or potentially the execution of arbitrary code via a specially crafted UTF-8 character sequence (CVE-2021-26937).

References

- https://bugs.mageia.org/show_bug.cgi?id=28390

- https://lists.debian.org/debian-security-announce/2021/msg00042.html

- https://www.cve.org/CVERecord?id=CVE-2021-26937

Resolution

SRPMS

- 8/core/screen-4.8.0-2.1.mga8

- 7/core/screen-4.6.2-2.2.mga7

Publication date: 04 Mar 2021
URL: https://advisories.mageia.org/MGASA-2021-0109.html
Type: security
CVE: CVE-2021-26937

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here