Vulnerabilities (CVE)

Filtered by vendor Gnu Subscribe
Filtered by product Screen
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2009-1214 1 Gnu 1 Screen 2017-08-17 4.9 MEDIUM N/A
GNU screen 4.0.3 creates the /tmp/screen-exchange temporary file with world-readable permissions, which might allow local users to obtain sensitive session information.
CVE-2007-3048 1 Gnu 1 Screen 2017-07-29 7.2 HIGH N/A
** DISPUTED ** GNU screen 4.0.3 allows local users to unlock the screen via a CTRL-C sequence at the password prompt. NOTE: multiple third parties report inability to reproduce this issue.
CVE-2002-1602 1 Gnu 1 Screen 2017-07-11 4.6 MEDIUM N/A
Buffer overflow in the Braille module for GNU screen 3.9.11, when HAVE_BRAILLE is defined, allows local users to execute arbitrary code.
CVE-2003-0972 1 Gnu 1 Screen 2016-10-18 10.0 HIGH N/A
Integer signedness error in ansi.c for GNU screen 4.0.1 and earlier, and 3.9.15 and earlier, allows local users to execute arbitrary code via a large number of ";" (semicolon) characters in escape sequences, which leads to a buffer overflow.
CVE-2006-4573 1 Gnu 1 Screen 2011-03-08 2.6 LOW N/A
Multiple unspecified vulnerabilities in the "utf8 combining characters handling" (utf8_handle_comb function in encoding.c) in screen before 4.0.3 allows user-assisted attackers to cause a denial of service (crash or hang) via certain UTF8 sequences.