screen-4.1.0-0.27.20120314git3c2946.el7

エラータID: AXSA:2021-1601:01

Release date: 
Tuesday, March 23, 2021 - 08:50
Subject: 
screen-4.1.0-0.27.20120314git3c2946.el7
Affected Channels: 
Asianux Server 7 for x86_64
Severity: 
Low
Description: 

The screen utility allows users to have multiple logins on a single terminal.

Security Fix(es):

* screen: crash when processing combining chars (CVE-2021-26937)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2021-26937
encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or possibly have unspecified other impact via a crafted UTF-8 character sequence.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. screen-4.1.0-0.27.20120314git3c2946.el7.src.rpm
    MD5: b40e335dcdf14fb3ebaf974cd4dba8f0
    SHA-256: 122de99e3aa39c051fd021e077399d8b1bafff44aefecf4dbf2f550273b63102
    Size: 847.10 kB

Asianux Server 7 for x86_64
  1. screen-4.1.0-0.27.20120314git3c2946.el7.x86_64.rpm
    MD5: 699f1ef54b83c2f336f1fc644b579a55
    SHA-256: 49cc3580f562e2580f1de39d960041099d46aea9e85e3ded120a55803bb2fd52
    Size: 551.70 kB