Wind River Support Network

HomeDefectsLIN1021-203
Fixed

LIN1021-203 : Security Advisory - rxvt-unicode - CVE-2021-33477

Created: May 20, 2021    Updated: Jul 20, 2021
Resolved Date: Jul 6, 2021
Found In Version: 10.21.20.1
Fix Version: 10.21.20.3
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace

Description

rxvt-unicode 9.22, rxvt 2.7.10, mrxvt 0.5.4, and Eterm 0.9.7 allow (potentially remote) code execution because of improper handling of certain escape sequences (ESC G Q). A response is terminated by a newline.

CREATE(Triage):(User=admin) CVE-2021-33477 (https://nvd.nist.gov/vuln/detail/CVE-2021-33477)

CVEs


Live chat
Online