summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorfluffy <fluffy@35697150-7ecd-e111-bb59-0022644237b5>2020-10-31 02:38:09 +0000
committerfluffy <fluffy@35697150-7ecd-e111-bb59-0022644237b5>2020-10-31 02:38:09 +0000
commit5c5473c1a7211ca6534fc1e7b4db7de6aac516f2 (patch)
tree442efeb276de52ab087c84d76f23d23afa4145a3
parent3dab135b64a4fe9a4c2ce8e36e3d491f939dd4c8 (diff)
downloadfreebsd-ports-5c5473c1a7211ca6534fc1e7b4db7de6aac516f2.tar.gz
freebsd-ports-5c5473c1a7211ca6534fc1e7b4db7de6aac516f2.tar.bz2
security/vuxml: Document stack overflow in tmux
PR: 250737 git-svn-id: http://svn.freebsd.org/ports/head@553726 35697150-7ecd-e111-bb59-0022644237b5
-rw-r--r--security/vuxml/vuln.xml26
1 files changed, 26 insertions, 0 deletions
diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml
index a81c235b9e6e..fca0b8f5d7c1 100644
--- a/security/vuxml/vuln.xml
+++ b/security/vuxml/vuln.xml
@@ -58,6 +58,32 @@ Notes:
* Do not forget port variants (linux-f10-libxml2, libxml2, etc.)
-->
<vuxml xmlns="http://www.vuxml.org/apps/vuxml-1">
+ <vuln vid="8827134c-1a8f-11eb-9bb0-08002725d892">
+ <topic>tmux -- stack overflow in CSI parsing</topic>
+ <affects>
+ <package>
+ <name>tmux</name>
+ <range><lt>3.1c</lt></range>
+ </package>
+ </affects>
+ <description>
+ <body xmlns="http://www.w3.org/1999/xhtml">
+ <p>Nicholas Marriott reports:</p>
+ <blockquote cite="https://groups.google.com/g/tmux-users/c/DGfmsD9CM00/m/Six6uZG0AQAJ">
+ <p>tmux has a stack overflow in CSI parsing.</p>
+ </blockquote>
+ </body>
+ </description>
+ <references>
+ <url>https://groups.google.com/g/tmux-users/c/DGfmsD9CM00/m/Six6uZG0AQAJ</url>
+ <url>https://marc.info/?l=openbsd-announce&amp;m=160399126725142&amp;w=2</url>
+ </references>
+ <dates>
+ <discovery>2020-10-29</discovery>
+ <entry>2020-10-30</entry>
+ </dates>
+ </vuln>
+
<vuln vid="94ffc0d9-1915-11eb-b809-b42e991fc52e">
<topic>motion -- Denial of Service</topic>
<affects>