UbuntuUpdates.org

Bugs fixes in "screen"

Origin Bug number Title Date fixed
CVE CVE-2025-46805 Screen version 5.0.0 and older version 4 releases have a TOCTOU race potentially allowing to send SIGHUP, SIGCONT to privileged processes when insta 2026-01-27
CVE CVE-2025-46804 A minor information leak when running Screen with setuid-root privileges allows unprivileged users to deduce information about a path that would othe 2026-01-27
CVE CVE-2025-46802 For a short time they PTY is set to mode 666, allowing any user on the system to connect to the screen session. 2026-01-27
CVE CVE-2025-46805 Screen version 5.0.0 and older version 4 releases have a TOCTOU race potentially allowing to send SIGHUP, SIGCONT to privileged processes when insta 2026-01-27
CVE CVE-2025-46804 A minor information leak when running Screen with setuid-root privileges allows unprivileged users to deduce information about a path that would othe 2026-01-27
CVE CVE-2025-46802 For a short time they PTY is set to mode 666, allowing any user on the system to connect to the screen session. 2026-01-27
CVE CVE-2023-24626 socket.c in GNU Screen through 4.9.0, when installed setuid or setgid (the default on platforms such as Arch Linux and FreeBSD), allows local users t 2026-01-27
CVE CVE-2025-46805 Screen version 5.0.0 and older version 4 releases have a TOCTOU race potentially allowing to send SIGHUP, SIGCONT to privileged processes when insta 2026-01-27
CVE CVE-2025-46804 A minor information leak when running Screen with setuid-root privileges allows unprivileged users to deduce information about a path that would othe 2026-01-27
CVE CVE-2025-46802 For a short time they PTY is set to mode 666, allowing any user on the system to connect to the screen session. 2026-01-27
CVE CVE-2023-24626 socket.c in GNU Screen through 4.9.0, when installed setuid or setgid (the default on platforms such as Arch Linux and FreeBSD), allows local users t 2026-01-27
CVE CVE-2025-46805 Screen version 5.0.0 and older version 4 releases have a TOCTOU race potentially allowing to send SIGHUP, SIGCONT to privileged processes when insta 2026-01-27
CVE CVE-2025-46804 A minor information leak when running Screen with setuid-root privileges allows unprivileged users to deduce information about a path that would othe 2026-01-27
CVE CVE-2025-46802 For a short time they PTY is set to mode 666, allowing any user on the system to connect to the screen session. 2026-01-27
Launchpad 2109313 \ 2025-06-26
Launchpad 2109313 \ 2025-06-16
CVE CVE-2021-26937 encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or possibly 2021-02-24
CVE CVE-2021-26937 encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or possibly 2021-02-24
CVE CVE-2021-26937 encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or possibly 2021-02-24
CVE CVE-2021-26937 encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or possibly 2021-02-24



About   -   Send Feedback to @ubuntu_updates