Mandrake Linux Security Advisory : rxvt (MDKSA-2003:034)
High Nessus Plugin ID 14018
SynopsisThe remote Mandrake Linux host is missing one or more security updates.
DescriptionDigital Defense Inc. released a paper detailing insecurities in various terminal emulators, including rxvt. Many of the features supported by these programs can be abused when untrusted data is displayed on the screen. This abuse can be anything from garbage data being displayed to the screen or a system compromise.
SolutionUpdate the affected rxvt, rxvt-CJK and / or rxvt-devel packages.