Lucene search

K
cvelistFedoraCVELIST:CVE-2022-4170
HistoryDec 09, 2022 - 12:00 a.m.

CVE-2022-4170

2022-12-0900:00:00
CWE-74
fedora
www.cve.org
1
rxvt-unicode
remote code execution
perl
data control
terminal options.

9.7 High

AI Score

Confidence

High

0.006 Low

EPSS

Percentile

77.9%

The rxvt-unicode package is vulnerable to a remote code execution, in the Perl background extension, when an attacker can control the data written to the user’s terminal and certain options are set.

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "rxvt-unicode",
    "versions": [
      {
        "version": "rxvt-unicode 9.30",
        "status": "affected"
      }
    ]
  }
]

9.7 High

AI Score

Confidence

High

0.006 Low

EPSS

Percentile

77.9%