cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2023-24626,https://securityvulnerability.io/vulnerability/CVE-2023-24626,,"socket.c in GNU Screen through 4.9.0, when installed setuid or setgid (the default on platforms such as Arch Linux and FreeBSD), allows local users to send a privileged SIGHUP signal to any PID, causing a denial of service or disruption of the target process.",Gnu,Screen,6.5,MEDIUM,0.0006200000061653554,false,false,false,false,,false,false,2023-04-08T05:15:00.000Z,0 CVE-2021-26937,https://securityvulnerability.io/vulnerability/CVE-2021-26937,,encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or possibly have unspecified other impact via a crafted UTF-8 character sequence.,Gnu,Screen,9.8,CRITICAL,0.020479999482631683,false,false,false,false,,false,false,2021-02-09T19:35:50.000Z,0 CVE-2020-9366,https://securityvulnerability.io/vulnerability/CVE-2020-9366,,"A buffer overflow was found in the way GNU Screen before 4.8.0 treated the special escape OSC 49. Specially crafted output, or a special program, could corrupt memory and crash Screen or possibly have unspecified other impact.",Gnu,Screen,9.8,CRITICAL,0.004240000154823065,false,false,false,false,,false,false,2020-02-24T16:20:15.000Z,0 CVE-2017-5618,https://securityvulnerability.io/vulnerability/CVE-2017-5618,,GNU screen before 4.5.1 allows local users to modify arbitrary files and consequently gain root privileges by leveraging improper checking of logfile permissions.,Gnu,Screen,7.8,HIGH,0.0004600000102072954,false,false,false,false,,false,false,2017-03-20T16:00:00.000Z,0 CVE-2015-6806,https://securityvulnerability.io/vulnerability/CVE-2015-6806,,"The MScrollV function in ansi.c in GNU screen 4.3.1 and earlier does not properly limit recursion, which allows remote attackers to cause a denial of service (stack consumption) via an escape sequence with a large repeat count value.",Gnu,Gnu Screen,,,0.13728000223636627,false,false,false,false,,false,false,2015-09-28T20:00:00.000Z,0 CVE-2009-1215,https://securityvulnerability.io/vulnerability/CVE-2009-1215,,Race condition in GNU screen 4.0.3 allows local users to create or overwrite arbitrary files via a symlink attack on the /tmp/screen-exchange temporary file.,Gnu,Gnu Screen,,,0.0004199999966658652,false,false,false,false,,false,false,2009-04-01T10:00:00.000Z,0 CVE-2009-1214,https://securityvulnerability.io/vulnerability/CVE-2009-1214,,"GNU screen 4.0.3 creates the /tmp/screen-exchange temporary file with world-readable permissions, which might allow local users to obtain sensitive session information.",Gnu,Screen,,,0.0004199999966658652,false,false,false,false,,false,false,2009-04-01T10:00:00.000Z,0 CVE-2007-3048,https://securityvulnerability.io/vulnerability/CVE-2007-3048,,GNU screen 4.0.3 allows local users to unlock the screen via a CTRL-C sequence at the password prompt. NOTE: multiple third parties report inability to reproduce this issue,Gnu,Screen,,,0.0004199999966658652,false,false,false,false,,false,false,2007-06-05T23:30:00.000Z,0 CVE-2006-4573,https://securityvulnerability.io/vulnerability/CVE-2006-4573,,"Multiple unspecified vulnerabilities in the ""utf8 combining characters handling"" (utf8_handle_comb function in encoding.c) in screen before 4.0.3 allows user-assisted attackers to cause a denial of service (crash or hang) via certain UTF8 sequences.",Gnu,Screen,,,0.02020999975502491,false,false,false,false,,false,false,2006-10-24T18:00:00.000Z,0 CVE-2003-0972,https://securityvulnerability.io/vulnerability/CVE-2003-0972,,"Integer signedness error in ansi.c for GNU screen 4.0.1 and earlier, and 3.9.15 and earlier, allows local users to execute arbitrary code via a large number of "";"" (semicolon) characters in escape sequences, which leads to a buffer overflow.",Gnu,Screen,,,0.0027799999807029963,false,false,false,false,,false,false,2003-12-15T05:00:00.000Z,0 CVE-2002-1602,https://securityvulnerability.io/vulnerability/CVE-2002-1602,,"Buffer overflow in the Braille module for GNU screen 3.9.11, when HAVE_BRAILLE is defined, allows local users to execute arbitrary code.",Gnu,Screen,,,0.0013800000306218863,false,false,false,false,,false,false,2002-04-23T04:00:00.000Z,0