CVE

Id
32500  
CVE No.
CVE-2008-2383  
Status
Candidate  
Description
CRLF injection vulnerability in xterm allows user-assisted attackers to execute arbitrary commands via LF (aka ) characters surrounding a command name within a Device Control Request Status String (DECRQSS) escape sequence in a text file, a related issue to CVE-2003-0063 and CVE-2003-0071.  
Phase
Assigned (20080521)  
Votes
None (candidate not yet proposed)  
Comments