screen-4.0.3-19.0.1.AXS4

エラータID: AXSA:2021-1631:02

Release date: 
Tuesday, April 6, 2021 - 05:37
Subject: 
screen-4.0.3-19.0.1.AXS4
Affected Channels: 
Asianux Server 4 for x86_64
Asianux Server 4 for x86
Severity: 
High
Description: 

The screen utility allows users to have multiple logins on a single terminal.

Security Fix(es):

* screen: crash when processing combining chars (CVE-2021-26937)

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE page(s)
listed in the References section.

CVE-2021-26937
encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial
of service (invalid write access and application crash) or possibly have
unspecified other impact via a crafted UTF-8 character sequence.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. screen-4.0.3-19.0.1.AXS4.src.rpm
    MD5: 651d4e163fab35668e24b4bce4188c80
    SHA-256: db81a9f3f3c50cfbb8751c8ccf168c14f4c40f5c733b48076c298724885b165a
    Size: 859.31 kB

Asianux Server 4 for x86
  1. screen-4.0.3-19.0.1.AXS4.i686.rpm
    MD5: 20a7748982b548c688b8cb5db3c9e4a3
    SHA-256: 275740edbb47a5d8733d506d1d94b619e79e2de3c04b20ee422981aec796330c
    Size: 484.09 kB

Asianux Server 4 for x86_64
  1. screen-4.0.3-19.0.1.AXS4.x86_64.rpm
    MD5: 3332440482dd8af6592150152f083e99
    SHA-256: 75c633842913fec80c2f782196d1a9761c4aeab13a515408aa1313edd014fbb5
    Size: 493.64 kB