Hacker News new | past | comments | ask | show | jobs | submit login
UTF-8 handling bug in GNU screen leads to at least DoS reachable remotely (twitter.com/taviso)
34 points by Aissen on Feb 9, 2021 | hide | past | favorite | 2 comments



CVE-2021-26937 assigned. [1]

Apparently XTerm is also affected. [2]

Reachable via irssi. [3]

[1] https://www.openwall.com/lists/oss-security/2021/02/09/8

> Got CVE-2021-26937 assigned for this.

[2] https://www.openwall.com/lists/oss-security/2021/02/09/7

> welp, I minimized it a bit and it crashed xterm too.

[3] https://www.openwall.com/lists/oss-security/2021/02/09/6

> I managed to reproduce this against screen + irssi. It was a bit tricky to get it triggered but eventually screen did die.


I was able to reach it via weechat, too:

https://twitter.com/Aissn/status/1359227572182278145




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: