First published: Tue May 02 2017(Updated: )
Rxvt 2.7.10 is vulnerable to a denial of service attack by passing the value -2^31 inside a terminal escape code, which results in a non-invertible integer that eventually leads to a segfault due to an out of bounds read.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
rxvt | ||
Debian GNU/Linux | =9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-7483 is classified as a denial of service vulnerability.
CVE-2017-7483 exploits occur by passing the value -2^31 into a terminal escape code, leading to a segmentation fault.
CVE-2017-7483 affects Rxvt version 2.7.10 and Debian Linux 9.0.
To fix CVE-2017-7483, update to a patched version of Rxvt that resolves the denial of service vulnerability.
As of the last update, there were no known active exploits specifically leveraging CVE-2017-7483.