SwiftTerm is a Xterm/VT100 Terminal emulator. Prior to commit a94e6b24d24ce9680ad79884992e1dff8e150a31, an attacker could modify the window title via a certain character escape sequence and then insert it back to the command line in the user's terminal, e.g. when the user views a file containing the malicious sequence, which could allow the attacker to execute arbitrary commands. Version a94e6b24d24ce9680ad79884992e1dff8e150a31 contains a patch for this issue. There are no known workarounds available.
                
            References
                    | Link | Resource | 
|---|---|
| https://github.com/migueldeicaza/SwiftTerm/commit/a94e6b24d24ce9680ad79884992e1dff8e150a31 | Patch Third Party Advisory | 
| https://github.com/migueldeicaza/SwiftTerm/security/advisories/GHSA-jq43-q8mx-r7mq | Third Party Advisory | 
| https://github.com/migueldeicaza/SwiftTerm/commit/a94e6b24d24ce9680ad79884992e1dff8e150a31 | Patch Third Party Advisory | 
| https://github.com/migueldeicaza/SwiftTerm/security/advisories/GHSA-jq43-q8mx-r7mq | Third Party Advisory | 
Configurations
                    History
                    21 Nov 2024, 06:48
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://github.com/migueldeicaza/SwiftTerm/commit/a94e6b24d24ce9680ad79884992e1dff8e150a31 - Patch, Third Party Advisory | |
| References | () https://github.com/migueldeicaza/SwiftTerm/security/advisories/GHSA-jq43-q8mx-r7mq - Third Party Advisory | |
| CVSS | v2 : v3 : | v2 : unknown v3 : 7.1 | 
14 Jul 2023, 19:10
| Type | Values Removed | Values Added | 
|---|---|---|
| CVSS | v2 : v3 : | v2 : unknown v3 : 7.8 | 
| CWE | NVD-CWE-Other | |
| References | (MISC) https://github.com/migueldeicaza/SwiftTerm/commit/a94e6b24d24ce9680ad79884992e1dff8e150a31 - Patch, Third Party Advisory | |
| References | (MISC) https://github.com/migueldeicaza/SwiftTerm/security/advisories/GHSA-jq43-q8mx-r7mq - Third Party Advisory | |
| CPE | cpe:2.3:a:swiftterm_project:swiftterm:*:*:*:*:*:*:*:* | 
02 Dec 2022, 23:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2022-12-02 23:15
Updated : 2024-11-21 06:48
NVD link : CVE-2022-23465
Mitre link : CVE-2022-23465
CVE.ORG link : CVE-2022-23465
JSON object : View
Products Affected
                swiftterm_project
- swiftterm
CWE
                