5
CVSSv2

CVE-2017-7483

Published: 02/05/2017 Updated: 01/02/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Rxvt 2.7.10 is vulnerable to a denial of service attack by passing the value -2^31 inside a terminal escape code, which results in a non-invertible integer that eventually leads to a segfault due to an out of bounds read.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

rxvt project rxvt -

debian debian linux 9.0

Vendor Advisories

Debian Bug report logs - #861694 rxvt: CVE-2017-7483 Package: src:rxvt; Maintainer for src:rxvt is Ryan Kavanagh <rak@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Tue, 2 May 2017 20:12:01 UTC Severity: important Tags: patch, security, upstream Found in version rxvt/1:2710-6 Fixed in ve ...