VYPR

Rxvt Unicode

by Rxvt Unicode Project

CVEs (2)

  • CVE-2022-4170CriDec 9, 2022
    risk 0.64cvss 9.8epss 0.02

    The rxvt-unicode package is vulnerable to a remote code execution, in the Perl background extension, when an attacker can control the data written to the user's terminal and certain options are set.

  • CVE-2021-33477HigMay 20, 2021
    risk 0.58cvss 8.8epss 0.04

    rxvt-unicode 9.22, rxvt 2.7.10, mrxvt 0.5.4, and Eterm 0.9.7 allow (potentially remote) code execution because of improper handling of certain escape sequences (ESC G Q). A response is terminated by a newline.