htop 0.7 writes process names to a terminal without sanitizing non-printable characters, which might allow local users to hide processes, modify arbitrary files, or have unspecified other impact via a process name with "crazy control strings."
References
Configurations
History
No history.
Information
Published : 2008-11-14 18:09
Updated : 2024-02-04 17:33
NVD link : CVE-2008-5076
Mitre link : CVE-2008-5076
CVE.ORG link : CVE-2008-5076
JSON object : View
Products Affected
htop
- htop
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor