SB2022051197 - openEuler 22.03 LTS update for vte
Published: May 11, 2022
Security Bulletin ID
SB2022051197
Severity
Low
Patch available
YES
Number of vulnerabilities
1
Exploitation vector
Remote access
Highest impact
Denial of service
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Buffer overflow (CVE-ID: CVE-2012-2738)
The vulnerability allows a remote #AU# to perform service disruption.
The VteTerminal in gnome-terminal (vte) before 0.32.2 allows remote authenticated users to cause a denial of service (long loop and CPU consumption) via an escape sequence with a large repeat count value.
Remediation
Install update from vendor's website.