Bug#249325: Title change escape sequence can crash gnome-terminal

Enrico Zini zinie@cs.unibo.it (Enrico Zini), 249325@bugs.debian.org
Tue, 18 May 2004 21:48:48 +0200


On Tue, May 18, 2004 at 08:10:49PM +0200, Arnaud Patard (Rtp) wrote:

> > Besides being potentially dangerous (if well investigated and reproduced, I can
> > imagine this could be the road to some arbitrary code execution), the bug is
> Due to the nature of this bug, I'm not quite sure that it can lead to arbitrary code execution. I'll look further into the source code. 
> > also extremely annoying as it crashes all open terminals with everything that
> > is inside.
> I know that a crash with gnome terminal closes all open terminals but it'll always do that with all kind of crash. It's due to gnome terminal nature.
> 
> If you don't mind, I'll tag it as important

As you wish.  I tagged it as critical because a sequence in a file that
gets catted (or a mail that gets displayed) is able to crash the
terminal, leading to a potential remote attach.  I don't know if it's
possible to do more than just crashing the terminal (usually, with
segfaults, it may be possible).  However, the simple possibility that
one could write a mail or a textfile that can crash my terminal may be a
security issue.

Anyhow, you know what's going on better than I do, so I'll be fine with
your judgement.

Thanks and ciao,

Enrico