CVE-2021-27135
10.02.2021, 16:15
xterm before Patch #366 allows remote attackers to execute arbitrary code or cause a denial of service (segmentation fault) via a crafted UTF-8 combining character sequence.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| invisible-island | xterm | 𝑥 < 366 |
| debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| xterm-330 |
| ||||||||||||||||||||||||||||||||||||||||||||
| xterm-bin-330 |
|
Red Hat Enterprise Linux Releases
Red Hat Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| xterm |
| ||||||||||||||||
| xterm-resize |
|
References