Project Subscriptions
No data.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
Thu, 01 Oct 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 01 Oct 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | collectl: collectl: colmux does not sanitize ANSI/VT100 terminal escape sequences in data received from remote collectl instances | Collectl: collectl: colmux does not sanitize ansi/vt100 terminal escape sequences in data received from remote collectl instances |
| References |
|
Thu, 01 Oct 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | colmux in collectl before 4.3.20.2 does not sanitize ANSI/VT100 terminal escape sequences in data received from remote collectl instances before displaying it, allowing a local user on a monitored host to inject escape sequences into the terminal of an operator running colmux, via a crafted process name (argv[0]). | |
| Title | collectl: collectl: colmux does not sanitize ANSI/VT100 terminal escape sequences in data received from remote collectl instances | |
| Weaknesses | CWE-150 | |
| References |
| |
| Metrics |
threat_severity
|
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: fedora
Published:
Updated: 2026-10-01T15:24:12.796Z
Reserved: 2026-09-30T15:19:13.980Z
Link: CVE-2026-103431
Updated: 2026-10-01T15:24:09.200Z
Status : Deferred
Published: 2026-10-01T09:17:07.717
Modified: 2026-10-01T16:17:36.177
Link: CVE-2026-103431
OpenCVE Enrichment
Updated: 2026-10-01T02:00:15Z