ZeroHour

CVE-2020-5253

CVSS 3.1
9.8 critical
EPSS
<1%p44
Published
()
Modified
Description

NetHack before version 3.6.0 allowed malicious use of escaping of characters in the configuration file (usually .nethackrc) which could be exploited. This bug is patched in NetHack 3.6.0.

Vendors
nethack
Products
nethack
Weakness
CWE-184, CWE-269
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.