4
CVSSv2

CVE-2012-2385

Published: 29/06/2012 Updated: 29/08/2017
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
VMScore: 405
Vector: AV:N/AC:L/Au:S/C:N/I:N/A:P

Vulnerability Summary

The terminal dispatcher in mosh prior to 1.2.1 allows remote authenticated users to cause a denial of service (long loop and CPU consumption) via an escape sequence with a large repeat count value.

Vulnerable Product Search on Vulmon Subscribe to Product

keith winstein mosh 1.1.1

keith winstein mosh 1.1

keith winstein mosh 1.2

keith winstein mosh 1.0

keith winstein mosh 0.98c

keith winstein mosh

keith winstein mosh 1.1.3

keith winstein mosh 1.1.2

keith winstein mosh 1.1.3-2

keith winstein mosh 1.1.3-1

Exploits

source: wwwsecurityfocuscom/bid/53646/info Mosh is prone to a remote denial-of-service vulnerability An attacker can exploit this issue to cause the affected application to crash or to enter an endless loop, denying service to legitimate users echo -en "\e[2147483647L" echo -en "\e[2147483647M" echo -en "\e[2147483647@" echo -en "\e[ ...