CVE Tools

Rxvt

6 CVEs tracked since 2000. Since Jul 2000, none of them reached CISA KEV.

Rxvt CVEs per month

Jul 2000 to Sep 2004. Point at a month, or focus the strip and use the arrow keys.
Rxvt CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2000-0710
2000-08null or fewer
2000-09null or fewer
2000-10null or fewer
2000-11null or fewer
2000-12null or fewer
2001-01null or fewer
2001-02null or fewer
2001-03null or fewer
2001-04null or fewer
2001-05null or fewer
2001-06null or fewer
2001-07null or fewer
2001-08null or fewer
2001-0910
2001-10null or fewer
2001-11null or fewer
2001-12null or fewer
2002-01null or fewer
2002-0210
2002-03null or fewer
2002-04null or fewer
2002-05null or fewer
2002-06null or fewer
2002-07null or fewer
2002-08null or fewer
2002-09null or fewer
2002-10null or fewer
2002-11null or fewer
2002-12null or fewer
2003-01null or fewer
2003-02null or fewer
2003-03null or fewer
2003-04null or fewer
2003-05null or fewer
2003-06null or fewer
2003-07null or fewer
2003-08null or fewer
2003-09null or fewer
2003-10null or fewer
2003-11null or fewer
2003-12null or fewer
2004-01null or fewer
2004-02null or fewer
2004-03null or fewer
2004-04null or fewer
2004-05null or fewer
2004-06null or fewer
2004-07null or fewer
2004-08null or fewer
2004-0930

Products

The products that kept showing up in Rxvt's monthly top three, with their CVEs summed over those months.

  1. Rxvt64 months

Latest CVEs

The 7 most recently published vulnerabilities affecting Rxvt.

  1. CVE-2008-1142rxvt 2.6.4 opens a terminal window on :0 if the DISPLAY environment variable is not set, which might allow local users to hijack X11 connections. NOTE: it was later reported that rxvt-unicode, mrx...3.7
  2. CVE-2003-0023The menuBar feature in rxvt 2.7.8 allows attackers to modify menu options and execute arbitrary commands via a certain character escape sequence that inserts the commands into the menu.5.0
  3. CVE-2003-0022The "screen dump" feature in rxvt 2.7.8 allows attackers to overwrite arbitrary files via a certain character escape sequence when it is echoed to a user's terminal, e.g. when the user views a file...5.0
  4. CVE-2003-0066The rxvt terminal emulator 2.7.8 and earlier allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user's terminal, ...7.5
  5. CVE-2001-1077Buffer overflow in tt_printf function of rxvt 2.6.2 allows local users to gain privileges via a long (1) -T or (2) -name argument.4.6
  6. CVE-1999-1186rxvt, when compiled with the PRINT_PIPE option in various Linux operating systems including Linux Slackware 3.0 and RedHat 2.1, allows local users to gain root privileges by specifying a malicious ...7.2
  7. CVE-2000-0476xterm, Eterm, and rxvt allow an attacker to cause a denial of service by embedding certain escape characters which force the window to be resized.5.0

The record

Peak rank
#58 in Sep 2004
Busiest month shown
Sep 2004, 3 CVEs
Months with a KEV entry
0 since Jul 2000
Monthly snapshots
4 since 2000
Rxvt's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store