ZeroHour

CVE-2023-24626

CVSS 3.1
6.5 medium
EPSS
<1%p44
Published
()
Modified
Description

socket.c in GNU Screen through 4.9.0, when installed setuid or setgid (the default on platforms such as Arch Linux and FreeBSD), allows local users to send a privileged SIGHUP signal to any PID, causing a denial of service or disruption of the target process.

Vendors
gnu
Products
screen
Weakness
CWE-732
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.