Vulnerabilities > GNU > Screen

DATE CVE VULNERABILITY TITLE RISK
2023-04-08 CVE-2023-24626 Unspecified vulnerability in GNU Screen
socket.c in GNU Screen through 4.9.0, when installed setuid or setgid (the default on platforms such as Arch Linux and FreeBSD), allows local users to send a privileged SIGHUP signal to any PID, causing a denial of service or disruption of the target process.
local
low complexity
gnu
6.5
2021-02-09 CVE-2021-26937 Argument Injection or Modification vulnerability in multiple products
encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or possibly have unspecified other impact via a crafted UTF-8 character sequence.
network
low complexity
gnu debian fedoraproject CWE-88
critical
9.8
2020-02-24 CVE-2020-9366 Out-of-bounds Write vulnerability in GNU Screen
A buffer overflow was found in the way GNU Screen before 4.8.0 treated the special escape OSC 49.
network
low complexity
gnu CWE-787
critical
9.8
2017-03-20 CVE-2017-5618 Incorrect Authorization vulnerability in GNU Screen
GNU screen before 4.5.1 allows local users to modify arbitrary files and consequently gain root privileges by leveraging improper checking of logfile permissions.
local
low complexity
gnu CWE-863
7.8