Your submission was sent successfully! Close

You have successfully unsubscribed! Close

CVE-2006-7236

Published: 2 January 2009

The default configuration of xterm on Debian GNU/Linux sid and possibly Ubuntu enables the allowWindowOps resource, which allows user-assisted attackers to execute arbitrary code or have unspecified other impact via escape sequences.

Priority

Medium

Status

Package Release Status
xterm
Launchpad, Ubuntu, Debian
dapper
Released (208-3.1ubuntu3.1)
gutsy
Released (229-1ubuntu0.1)
hardy
Released (229-1ubuntu1.1)
intrepid
Released (235-1ubuntu1.1)
upstream Needs triage