CVE-2022-24130
31.01.2022, 05:15
xterm through Patch 370, when Sixel support is enabled, allows attackers to trigger a buffer overflow in set_sixel in graphics_sixel.c via crafted text.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| invisible-island | xterm | 𝑥 ≤ 370 |
| debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| xterm-330 |
| ||||||||||||||||||||||||||||||
| xterm-bin-330 |
|
Red Hat Enterprise Linux Releases
References