Vulnerabilities
Vulnerable Software
Gnu:  >> Screen  >> 4.6.0  Security Vulnerabilities
socket.c in GNU Screen through 4.9.0, when installed setuid or setgid (the default on platforms such as Arch Linux and FreeBSD), allows local users to send a privileged SIGHUP signal to any PID, causing a denial of service or disruption of the target process.
CVSS Score
6.5
EPSS Score
0.001
Published
2023-04-08
encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or possibly have unspecified other impact via a crafted UTF-8 character sequence.
CVSS Score
9.8
EPSS Score
0.03
Published
2021-02-09
A buffer overflow was found in the way GNU Screen before 4.8.0 treated the special escape OSC 49. Specially crafted output, or a special program, could corrupt memory and crash Screen or possibly have unspecified other impact.
CVSS Score
9.8
EPSS Score
0.007
Published
2020-02-24


Contact Us

Shodan ® - All rights reserved