Mandrake Linux Security Advisory : Eterm (MDKSA-2003:040)
High Nessus Plugin ID 14024
SynopsisThe remote Mandrake Linux host is missing one or more security updates.
DescriptionDigital Defense Inc. released a paper detailing insecurities in various terminal emulators, including Eterm. Many of the features supported by these programs can be abused when untrusted data is displayed on the screen. This abuse can be anything from garbage data being displayed to the screen or a system compromise.
These issues are corrected in Eterm 0.9.2, which is already included in Mandrake Linux 9.1.
SolutionUpdate the affected packages.