oss-sec mailing list archives
CVE id request: htop
From: Nico Golde <oss-security+ml () ngolde de>
Date: Sun, 2 Nov 2008 13:06:02 +0100
Hi, htop doesn't filter non printable characters in process names which enables processes doing evil things with the display using escape sequences. http://bugs.debian.org/504144 Steve, can you assign a CVE id to this? Cheers Nico -- Nico Golde - http://www.ngolde.de - nion () jabber ccc de - GPG: 0x73647CFF For security reasons, all text in this mail is double-rot13 encrypted.
Attachment:
_bin
Description:
Current thread:
- CVE id request: htop Nico Golde (Nov 02)
- Re: CVE id request: htop Jan Lieskovsky (Nov 14)
- Re: CVE id request: htop Steven M. Christey (Nov 14)
- Re: CVE id request: htop Nico Golde (Nov 15)
- Re: CVE id request: htop Steven M. Christey (Nov 14)
- Re: CVE id request: htop Jan Lieskovsky (Nov 14)