Search CVE reports


Toggle filters

1 – 10 of 41 results


CVE-2025-46805

Low priority
Needs evaluation

Screen version 5.0.0 and older version 4 releases have a TOCTOU race potentially allowing to send SIGHUP, SIGCONT to privileged processes when installed setuid-root.

1 affected package

screen

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
screen Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-46804

Low priority
Needs evaluation

A minor information leak when running Screen with setuid-root privileges allows unprivileged users to deduce information about a path that would otherwise not be available. Affected are older Screen versions, as well as version 5.0.0.

1 affected package

screen

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
screen Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-46803

Medium priority
Not affected

The default mode of pseudo terminals (PTYs) allocated by Screen was changed from 0620 to 0622, thereby allowing anyone to write to any Screen PTYs in the system.

1 affected package

screen

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
screen Not affected Not affected Not affected Not affected
Show less packages

CVE-2025-46802

Medium priority
Needs evaluation

For a short time they PTY is set to mode 666, allowing any user on the system to connect to the screen session.

1 affected package

screen

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
screen Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-23395

Medium priority
Not affected

Screen 5.0.0 when it runs with setuid-root privileges does not drop privileges while operating on a user supplied path. This allows unprivileged users to create files in arbitrary locations with `root` ownership, the invoking...

1 affected package

screen

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
screen Not affected Not affected Not affected Not affected
Show less packages

CVE-2023-24626

Low priority

Some fixes available 3 of 8

socket.c in GNU Screen through 4.9.0, when installed setuid or setgid (the default on platforms such as Arch Linux and FreeBSD), allows local users to send a privileged SIGHUP signal to any PID, causing a denial of service...

1 affected package

screen

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
screen Not affected Needs evaluation Needs evaluation Fixed
Show less packages

CVE-2021-34557

Medium priority
Needs evaluation

XScreenSaver 5.45 can be bypassed if the machine has more than ten disconnectable video outputs. A buffer overflow in update_screen_layout() allows an attacker to bypass the standard screen lock authentication mechanism by...

1 affected package

xscreensaver

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xscreensaver Not affected Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2021-31523

Medium priority
Needs evaluation

The Debian xscreensaver 5.42+dfsg1-1 package for XScreenSaver has cap_net_raw enabled for the /usr/libexec/xscreensaver/sonar file, which allows local users to gain privileges because this is arguably incompatible with the design...

1 affected package

xscreensaver

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xscreensaver Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2021-26937

Medium priority
Fixed

encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or possibly have unspecified other impact via a crafted UTF-8 character sequence.

1 affected package

screen

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
screen Fixed Fixed
Show less packages

CVE-2020-9366

Medium priority
Not affected

A buffer overflow was found in the way GNU Screen before 4.8.0 treated the special escape OSC 49. Specially crafted output, or a special program, could corrupt memory and crash Screen or possibly have unspecified other impact.

1 affected package

screen

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
screen Not affected
Show less packages