CVE-2024-38395
CVSS Score
9.8
EPSS Score
0.0%
EPSS Percentile
0th
In iTerm2 before 3.5.2, the "Terminal may report window title" setting is not honored, and thus remote code execution might occur but "is not trivially exploitable."
| Vendor | n/a |
| Product | n/a |
| Published | Jun 16, 2024 |
| Last Updated | Aug 2, 2024 |
Stay Ahead of the Next One
Get instant alerts for n/a n/a
Be the first to know when new critical vulnerabilities affecting n/a n/a are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
n/a / n/a
n/a
References
iterm2.com: https://iterm2.com/downloads.html gitlab.com: https://gitlab.com/gnachman/iterm2/-/commit/f1e89f78dd72dcac3ba66d3d6f93db3f7f649219 openwall.com: https://www.openwall.com/lists/oss-security/2024/06/15/1 gitlab.com: https://gitlab.com/gnachman/iterm2/-/tags/v3.5.2 openwall.com: http://www.openwall.com/lists/oss-security/2024/06/17/1