A portion of memory (random stack data) disclosure flaw was found in the way dtach, a simple program emulating the detach feature of screen, performed client connection termination under certain circumstances. A remote attacker could use this flaw to potentially obtain sensitive information by issuing a specially-crafted dtach client connection close request.
Upstream ticket: [1] http://sourceforge.net/tracker/?func=detail&aid=3517812&groupid=36489&atid=417357
Preliminary proposed patch: [2] http://sourceforge.net/tracker/download.php?groupid=36489&atid=417357&fileid=441195&aid=3517812
References: [3] http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=625302 [4] https://bugzilla.redhat.com/showbug.cgi?id=812551