First published: Tue Oct 24 2006(Updated: )
Multiple unspecified vulnerabilities in the "utf8 combining characters handling" (utf8_handle_comb function in encoding.c) in screen before 4.0.3 allows user-assisted attackers to cause a denial of service (crash or hang) via certain UTF8 sequences.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
GNU Screen | <=4.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-4573 is considered a moderate severity vulnerability due to potential denial of service issues.
To fix CVE-2006-4573, upgrade GNU screen to version 4.0.3 or later.
CVE-2006-4573 can allow user-assisted attackers to cause a crash or hang by exploiting certain UTF8 sequences.
GNU screen versions prior to 4.0.3 are affected by CVE-2006-4573.
The main issue caused by CVE-2006-4573 is the improper handling of UTF8 combining characters leading to possible denial of service.