Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2021-33477
rxvt-unicode 9.22, rxvt 2.7.10, mrxvt 0.5.4, and Eterm 0.9.7 allow (potentially remote) code execution because of improper handling of certain escape sequences (ESC G Q). A response is terminated by a newline.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.002
EPSS Ranking
45.1%
CVSS Severity
CVSS v3 Score
8.8
CVSS v2 Score
6.5
References
http://cvs.schmorp.de/rxvt-unicode/Changes?view=log
http://cvs.schmorp.de/rxvt-unicode/src/command.C?r1=1.582&r2=1.583
https://git.enlightenment.org/apps/eterm.git/log/
https://lists.debian.org/debian-lts-announce/2021/05/msg00026.html
https://lists.debian.org/debian-lts-announce/2021/06/msg00010.html
https://lists.debian.org/debian-lts-announce/2021/06/msg00011.html
https://lists.debian.org/debian-lts-announce/2021/06/msg00012.html
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6RFMU5YXXNYYVA7G2DAHRXXHO6JKVFUT/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/AO52OLNOOKOCZSJCN3R7Q25XA32BWNWP/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DUV4LDVZVW7KCGPAMFZD4ZJ4FVLPOX4C/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NZWGE2RJONBEHSPCBUAW72NTRTIFKZAX/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SLPVEPBH37EBR4R54RMC6GD33J37HJXD/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UXAKO6N6NKTR6Z6KVAPEXSZQMRU52SGA/
https://packetstormsecurity.com/files/162621/rxvt-2.7.0-rxvt-unicode-9.22-Code-Execution.html
https://security.gentoo.org/glsa/202105-17
https://security.gentoo.org/glsa/202209-07
https://sourceforge.net/projects/materm/files/mrxvt%20source/
https://sourceforge.net/projects/rxvt/files/rxvt-dev/
https://www.openwall.com/lists/oss-security/2017/05/01/20
https://www.openwall.com/lists/oss-security/2021/05/17/1
http://cvs.schmorp.de/rxvt-unicode/Changes?view=log
http://cvs.schmorp.de/rxvt-unicode/src/command.C?r1=1.582&r2=1.583
https://git.enlightenment.org/apps/eterm.git/log/
https://lists.debian.org/debian-lts-announce/2021/05/msg00026.html
https://lists.debian.org/debian-lts-announce/2021/06/msg00010.html
https://lists.debian.org/debian-lts-announce/2021/06/msg00011.html
https://lists.debian.org/debian-lts-announce/2021/06/msg00012.html
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6RFMU5YXXNYYVA7G2DAHRXXHO6JKVFUT/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/AO52OLNOOKOCZSJCN3R7Q25XA32BWNWP/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DUV4LDVZVW7KCGPAMFZD4ZJ4FVLPOX4C/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NZWGE2RJONBEHSPCBUAW72NTRTIFKZAX/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SLPVEPBH37EBR4R54RMC6GD33J37HJXD/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UXAKO6N6NKTR6Z6KVAPEXSZQMRU52SGA/
https://packetstormsecurity.com/files/162621/rxvt-2.7.0-rxvt-unicode-9.22-Code-Execution.html
https://security.gentoo.org/glsa/202105-17
https://security.gentoo.org/glsa/202209-07
https://sourceforge.net/projects/materm/files/mrxvt%20source/
https://sourceforge.net/projects/rxvt/files/rxvt-dev/
https://www.openwall.com/lists/oss-security/2017/05/01/20
https://www.openwall.com/lists/oss-security/2021/05/17/1
Products affected by CVE-2021-33477
Eterm Project
»
Eterm
»
Version:
0.9.7
cpe:2.3:a:eterm_project:eterm:0.9.7
Mrxvt Project
»
Mrxvt
»
Version:
0.5.4
cpe:2.3:a:mrxvt_project:mrxvt:0.5.4
Rxvt-Unicode Project
»
Rxvt-Unicode
»
Version:
9.22
cpe:2.3:a:rxvt-unicode_project:rxvt-unicode:9.22
Rxvt Project
»
Rxvt
»
Version:
2.7.10
cpe:2.3:a:rxvt_project:rxvt:2.7.10
Debian
»
Debian Linux
»
Version:
9.0
cpe:2.3:o:debian:debian_linux:9.0
Fedoraproject
»
Fedora
»
Version:
33
cpe:2.3:o:fedoraproject:fedora:33
Fedoraproject
»
Fedora
»
Version:
34
cpe:2.3:o:fedoraproject:fedora:34
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved