https://seclists.org/oss-sec/2024/q1/260: CVE-2024-28085: Escape sequence injection in util-linux wall
Published Mar 27, 2024
·Updated
Affected Software
1 affected component
util-linux util-linux
Frequently Asked Questions
1
What is the severity of CVE-2024-28085?
CVE-2024-28085 has been classified with a high severity level due to the potential for escape sequence injection.
2
How do I fix CVE-2024-28085?
To mitigate CVE-2024-28085, users should update util-linux to the latest version where the vulnerability has been patched.
3
What impact does CVE-2024-28085 have on systems running util-linux?
CVE-2024-28085 allows attackers to inject escape sequences, potentially leading to unauthorized access or system compromises.
4
Which versions of util-linux are affected by CVE-2024-28085?
CVE-2024-28085 affects multiple versions of util-linux prior to the patch release addressing the vulnerability.
5
Is CVE-2024-28085 exploitable remotely?
Yes, CVE-2024-28085 can be exploited remotely if the vulnerable component is exposed to untrusted input.