CVE-2020-9366: Buffer Overflow
A buffer overflow was found in the way GNU Screen before 4.8.0 treated the special escape OSC 49. Specially crafted output, or a special program, could corrupt memory and crash Screen or possibly have unspecified other impact.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2020-9366?
The severity of CVE-2020-9366 is critical with a CVSS score of 9.8.
Which software is affected by CVE-2020-9366?
GNU Screen versions before 4.8.0 are affected by CVE-2020-9366.
How does CVE-2020-9366 impact the affected software?
Specially crafted output or a special program could corrupt memory and crash Screen or potentially have other unspecified impacts.
Is there a fix available for CVE-2020-9366?
Yes, updating to GNU Screen version 4.8.0 or later fixes CVE-2020-9366.
Where can I find more information about CVE-2020-9366?
You can find more information about CVE-2020-9366 at the following references: [Link 1](http://www.openwall.com/lists/oss-security/2020/02/25/1), [Link 2](https://lists.gnu.org/archive/html/screen-devel/2020-02/msg00007.html), [Link 3](https://security.gentoo.org/glsa/202003-62).