rxvt-unicode 9.22, rxvt 2.7.10, mrxvt 0.5.4, and Eterm 0.9.7 allow (potentially remote) code execution because of improper handling of certain escape sequences (ESC G Q). A response is terminated by a newline.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Information
Published : 2021-05-20 13:15
Updated : 2022-10-28 05:56
NVD link : CVE-2021-33477
Mitre link : CVE-2021-33477
JSON object : View
CWE
CWE-755
Improper Handling of Exceptional Conditions
Products Affected
fedoraproject
- fedora
rxvt_project
- rxvt
debian
- debian_linux
rxvt-unicode_project
- rxvt-unicode
eterm_project
- eterm
mrxvt_project
- mrxvt