Vulnerability Name: | CVE-2000-0476 (CCN-4987) | ||||||||
Assigned: | 2000-05-31 | ||||||||
Published: | 2000-05-31 | ||||||||
Updated: | 2008-09-10 | ||||||||
Summary: | xterm, Eterm, and rxvt allow an attacker to cause a denial of service by embedding certain escape characters which force the window to be resized. | ||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Denial of Service | ||||||||
References: | Source: BUGTRAQ Type: Patch, Vendor Advisory 20000601 [rootshell.com] Xterm DoS Attack Source: CCN Type: BugTraq Mailing List, Thu Jun 01 2000 - 13:21:16 CDT [rootshell.com] Xterm DoS Attack Source: BUGTRAQ Type: UNKNOWN 20000601 [rootshell.com] Xterm DoS Attack Source: CCN Type: BugTraq Mailing List, Thu Jun 01 2000 - 21:29:46 CDT Re: [rootshell.com] Xterm DoS Attack Source: CCN Type: BugTraq Mailing List, Sun Jun 04 2000 - 11:35:27 CDT Re: [rootshell.com] Xterm DoS Attack Source: CCN Type: BugTraq Mailing List, Tue Jun 06 2000 - 04:28:28 CDT Re: [rootshell.com] Xterm DoS Attack Source: MITRE Type: CNA CVE-2000-0476 Source: CCN Type: PuTTY Web site PuTTY: A Free Win32 Telnet/SSH Client Source: CCN Type: Floosietek Ltd. Web site Welcome to the new Eterm.Org, the official home of Eterm on the web! Source: CCN Type: OSVDB ID: 83441 rxvt Embedded Escape Character Handling DoS Source: CCN Type: OSVDB ID: 83442 XFree86 X11R6 Embedded Escape Character Handling DoS Source: CCN Type: OSVDB ID: 83443 Eterm Embedded Escape Character Handling DoS Source: CCN Type: OSVDB ID: 8348 PuTTY xterm Client Embedded Escape Character DoS Source: BID Type: Exploit, Patch, Vendor Advisory 1298 Source: CCN Type: BID-1298 Multiple Vendor xterm (and derivatives) Denial of Service Vulnerability Source: XF Type: UNKNOWN xterm-control-characters-dos(4987) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |