← Voltar à pesquisa de CVEs

CVE-2026-73480

gdu

Descrição

gdu fails to strip terminal escape sequences from directory and file names when printing paths after TUI exit. Attackers can craft malicious directory or file names containing escape sequences that are interpreted by the terminal, enabling title spoofing, clipboard manipulation, or other terminal-dependent effects.

CVSS 5EPSS 0.11800000000000001%Risco 0.51
Ver fonte
Publicação
2026-08-13 21:18:32
Versões afetadas
unknown
Tipo
Biblioteca
Última alteração
2026-08-14 20:16:57
Vetor
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N