security advisorydenial of servicebuffer overflow
Felix Weinmann reported a flaw in the handling of combining characters in screen, a terminal multiplexer with VT100/ANSI terminal emulation, which can result in denial of service, or potentially the execution of arbitrary code via a specially crafted UTF-8 character sequence. . - ------------------------------------------------------------------------- Debian Security Advisory DSA-4861-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/security/ Salvatore Bonaccorso February 21, 2021 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : screen CVE ID : CVE-2021-26937 Debian Bug : 982435 Felix Weinmann reported a flaw in the handling of combining charactersin screen, a terminal multiplexer with VT100/ANSI terminal emulation, which can result in denial of service, or potentially the execution of arbitrary code via a specially crafted UTF-8 character sequence. For the stable distribution (buster), this problem has been fixed in version 4.6.2-3+deb10u1. We recommend that you upgrade your screen packages. For the detailed security status of screen please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/screen Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Ubuntu Security Notice USN-4861-1 outlines an important security update for the application "screen," which resolves a denial of service vulnerability.. Screen Security, Debian Advisory, Denial of Service, Security Patch, Arbitrary Code. . Severity: Critical. LinuxSecurity.com Team
Feb 21, 2021
•Critical
Debian