CVE-2015-6806
published 2015-09-28CVE-2015-6806: The MScrollV function in ansi.c in GNU screen 4.3.1 and earlier does not properly limit recursion, which allows remote attackers to cause a denial of service…
PriorityP425medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
4.15%
89.7th percentile
The MScrollV function in ansi.c in GNU screen 4.3.1 and earlier does not properly limit recursion, which allows remote attackers to cause a denial of service (stack consumption) via an escape sequence with a large repeat count value.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | screen | < screen 4.3.1-2 (bookworm) | screen 4.3.1-2 (bookworm) |
| gnu | gnu_screen | <= 4.3.1 | — |
| gnu | screen | >= 0 < 4.3.1-2 | 4.3.1-2 |
| gnu | screen | >= 0 < 4.3.1-2 | 4.3.1-2 |
| gnu | screen | >= 0 < 4.3.1-2 | 4.3.1-2 |
| gnu | screen | >= 0 < 4.3.1-2 | 4.3.1-2 |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM
vendor_debian5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-3cxx-6jhw-pqvg: The MScrollV function in ansi
ghsa_unreviewed·2022-05-14
CVE-2015-6806 [MEDIUM] CWE-119 GHSA-3cxx-6jhw-pqvg: The MScrollV function in ansi
The MScrollV function in ansi.c in GNU screen 4.3.1 and earlier does not properly limit recursion, which allows remote attackers to cause a denial of service (stack consumption) via an escape sequence with a large repeat count value.
OSV
CVE-2015-6806: The MScrollV function in ansi
osv·2015-09-28·CVSS 5.0
CVE-2015-6806 [MEDIUM] CVE-2015-6806: The MScrollV function in ansi
The MScrollV function in ansi.c in GNU screen 4.3.1 and earlier does not properly limit recursion, which allows remote attackers to cause a denial of service (stack consumption) via an escape sequence with a large repeat count value.
Ubuntu
GNU Screen vulnerability
vendor_ubuntu·2019-05-29
CVE-2015-6806 GNU Screen vulnerability
Title: GNU Screen vulnerability
Summary: GNU Screen could be made to crash or run programs as your login if it
opened a specially crafted file or received specially crafted input.
Kuang-che Wu discovered that GNU Screen improperly handled certain input. An
attacker could use this issue to cause GNU Screen to crash, resulting in a
denial of service or the execution of arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
screen: Stack overflow due to deep recursion causing process freeze
vendor_redhat·2015-08-07·CVSS 5.0
CVE-2015-6806 [MEDIUM] CWE-121 screen: Stack overflow due to deep recursion causing process freeze
screen: Stack overflow due to deep recursion causing process freeze
The MScrollV function in ansi.c in GNU screen 4.3.1 and earlier does not properly limit recursion, which allows remote attackers to cause a denial of service (stack consumption) via an escape sequence with a large repeat count value.
Package: screen (Red Hat Enterprise Linux 5) - Will not fix
Package: screen (Red Hat Enterprise Linux 6) - Will not fix
Package: screen (Red Hat Enterprise Linux 7) - Will not fix
Debian
CVE-2015-6806: screen - The MScrollV function in ansi.c in GNU screen 4.3.1 and earlier does not properl...
vendor_debian·2015·CVSS 5.0
CVE-2015-6806 [MEDIUM] CVE-2015-6806: screen - The MScrollV function in ansi.c in GNU screen 4.3.1 and earlier does not properl...
The MScrollV function in ansi.c in GNU screen 4.3.1 and earlier does not properly limit recursion, which allows remote attackers to cause a denial of service (stack consumption) via an escape sequence with a large repeat count value.
Scope: local
bookworm: resolved (fixed in 4.3.1-2)
bullseye: resolved (fixed in 4.3.1-2)
forky: resolved (fixed in 4.3.1-2)
sid: resolved (fixed in 4.3.1-2)
trixie: resolved (fixed in 4.3.1-2)
No detection rules found.
No public exploits indexed.
http://git.savannah.gnu.org/cgit/screen.git/commit/?id=b7484c224738247b510ed0d268cd577076958f1bhttp://lists.opensuse.org/opensuse-security-announce/2019-06/msg00001.htmlhttp://www.debian.org/security/2015/dsa-3352http://www.openwall.com/lists/oss-security/2015/09/01/1http://www.openwall.com/lists/oss-security/2015/09/03/11http://www.openwall.com/lists/oss-security/2015/09/03/4https://savannah.gnu.org/bugs/?45713https://usn.ubuntu.com/3996-1/http://git.savannah.gnu.org/cgit/screen.git/commit/?id=b7484c224738247b510ed0d268cd577076958f1bhttp://lists.opensuse.org/opensuse-security-announce/2019-06/msg00001.htmlhttp://www.debian.org/security/2015/dsa-3352http://www.openwall.com/lists/oss-security/2015/09/01/1http://www.openwall.com/lists/oss-security/2015/09/03/11http://www.openwall.com/lists/oss-security/2015/09/03/4https://savannah.gnu.org/bugs/?45713https://usn.ubuntu.com/3996-1/
2015-09-28
Published