Re: [oss-security] vte 0.76.3 released with fix for CVE-2024-37535

2024-06-09 Thread Solar Designer
On Sun, Jun 09, 2024 at 11:26:33AM -0700, Alan Coopersmith wrote: > https://www.cve.org/CVERecord?id=CVE-2024-37535 states: > > >GNOME VTE before 0.76.3 allows an attacker to cause a denial of service > >(memory consumption) via a window resize escape sequence, a related issue > >to CVE-2000-0476

[oss-security] vte 0.76.3 released with fix for CVE-2024-37535

2024-06-09 Thread Alan Coopersmith
https://www.cve.org/CVERecord?id=CVE-2024-37535 states: GNOME VTE before 0.76.3 allows an attacker to cause a denial of service (memory consumption) via a window resize escape sequence, a related issue to CVE-2000-0476. https://gitlab.gnome.org/GNOME/vte/-/issues/2786 explains further: The