[Secure-testing-team] Bug#843434: terminology: Escape Sequence Command Execution vulnerability

Salvatore Bonaccorso carnil at debian.org
Sun Nov 6 17:12:31 UTC 2016


Source: terminology
Version: 0.7.0-1
Severity: grave
Tags: security upstream patch
Justification: user security hole

Hi

terminology is suspectible to an escape sequence command execution
vulnerability, as described in
http://www.openwall.com/lists/oss-security/2016/11/04/12

The CVE has not yet been assigned, will update the subject here once
it's done.

Regards,
Salvatore



More information about the Secure-testing-team mailing list