Security Advisory

CVE-2003-0972

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2003-12-02 05:00:00
Last updated 2024-08-08 02:12:35
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Integer signedness error in ansi.c for GNU screen 4.0.1 and earlier, and 3.9.15 and earlier, allows local users to execute arbitrary code via a large number of ";" (semicolon) characters in escape sequences, which leads to a buffer overflow.