Description: Some vulnerabilities have been reported in GNU Screen, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system.
The vulnerabilities are caused due to errors within the handling of certain UTF-8 characters. This can be exploited to crash GNU Screen or potentially execute arbitrary code by printing a specially crafted string to the window.
The vulnerability is reported in versions prior to 4.0.3.
Solution: Update to version 4.0.3.
Provided and/or discovered by: The vendor credits cstone and Rich Felker
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.