Logo
vulnerabilityCVE-2024-37535
Name
CVE-2024-37535
Source
NVD ( link)Debian ( link)
Description
GNOME VTE before 0.76.3 allows an attacker to cause a denial of service (memory consumption) via a window resize escape sequence, a related issue to CVE-2000-0476.
Published Date
Updated Date
Workaround
-
Advisories

Analysis#


Affected Component
Analysis
vte
Patched

Vulnerability Ratings#


4.4
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
yocto
master
0.82.2
Not Affected
yocto
scarthgap
0.74.2
Patched

Resolved with patches#


vte (yocto:kirkstone)

#
Title
Author
Resolve
1
emulation: Restrict resize request to sane numbers
Christian Persch <chpe@src.gnome.org>
CVE-2024-37535
2
widget: Add safety limit to widget size requests
Christian Persch <chpe@src.gnome.org>
CVE-2024-37535

vte (yocto:scarthgap)

#
Title
Author
Resolve
1
emulation: Restrict resize request to sane numbers
Christian Persch <chpe@src.gnome.org>
CVE-2024-37535
2
widget: Add safety limit to widget size requests
Christian Persch <chpe@src.gnome.org>
CVE-2024-37535