DescriptionThe "insert-blank-characters" capability in caps.c in gnome-terminal (vte) before 0.28.1 allows remote authenticated users to cause a denial of service (CPU and memory consumption and crash) via a crafted file, as demonstrated by a file containing the string, "\033[100000000000000000@".
NVD CVSS v2 Base Score: 3.5 (AV:N/AC:M/Au:S/C:N/I:N/A:P)
Novell/SUSE informationNo Novell Bugzilla entries cross referenced. SUSE Security Advisories:
- openSUSE-SU-2012:0931-1, published Wed, 1 Aug 2012 09:08:32 +0200 (CEST)