First published: Mon Feb 24 2020(Updated: )
A buffer overflow was found in the way GNU Screen before 4.8.0 treated the special escape OSC 49. Specially crafted output, or a special program, could corrupt memory and crash Screen or possibly have unspecified other impact.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GNU screen | <4.8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-9366 is critical with a CVSS score of 9.8.
GNU Screen versions before 4.8.0 are affected by CVE-2020-9366.
Specially crafted output or a special program could corrupt memory and crash Screen or potentially have other unspecified impacts.
Yes, updating to GNU Screen version 4.8.0 or later fixes CVE-2020-9366.
You can find more information about CVE-2020-9366 at the following references: [Link 1](http://www.openwall.com/lists/oss-security/2020/02/25/1), [Link 2](https://lists.gnu.org/archive/html/screen-devel/2020-02/msg00007.html), [Link 3](https://security.gentoo.org/glsa/202003-62).