ALPINE-CVE-2020-27347

Source
https://security.alpinelinux.org/vuln/CVE-2020-27347
Import Source
https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2020-27347.json
JSON Data
https://api.osv.dev/v1/vulns/ALPINE-CVE-2020-27347
Upstream
Published
2020-11-06T03:15:17.137Z
Modified
2026-06-15T18:18:08.589454594Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

In tmux before version 3.1c the function inputcsidispatchsgrcolon() in file input.c contained a stack-based buffer-overflow that can be exploited by terminal output.

References

Affected packages

Alpine:v3.10
tmux

Package

Name
tmux
Purl
pkg:apk/alpine/tmux?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9a-r2

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2020-27347.json"
Alpine:v3.11
tmux

Package

Name
tmux
Purl
pkg:apk/alpine/tmux?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.0a-r2

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2020-27347.json"
Alpine:v3.12
tmux

Package

Name
tmux
Purl
pkg:apk/alpine/tmux?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.1c-r0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2020-27347.json"
Alpine:v3.13
tmux

Package

Name
tmux
Purl
pkg:apk/alpine/tmux?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.1c-r0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2020-27347.json"
Alpine:v3.14
tmux

Package

Name
tmux
Purl
pkg:apk/alpine/tmux?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.1c-r0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2020-27347.json"
Alpine:v3.15
tmux

Package

Name
tmux
Purl
pkg:apk/alpine/tmux?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.1c-r0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2020-27347.json"
Alpine:v3.16
tmux

Package

Name
tmux
Purl
pkg:apk/alpine/tmux?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.1c-r0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2020-27347.json"
Alpine:v3.17
tmux

Package

Name
tmux
Purl
pkg:apk/alpine/tmux?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.1c-r0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2020-27347.json"
Alpine:v3.18
tmux

Package

Name
tmux
Purl
pkg:apk/alpine/tmux?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.1c-r0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2020-27347.json"
Alpine:v3.19
tmux

Package

Name
tmux
Purl
pkg:apk/alpine/tmux?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.1c-r0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2020-27347.json"
Alpine:v3.20
tmux

Package

Name
tmux
Purl
pkg:apk/alpine/tmux?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.1c-r0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2020-27347.json"
Alpine:v3.21
tmux

Package

Name
tmux
Purl
pkg:apk/alpine/tmux?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.1c-r0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2020-27347.json"
Alpine:v3.22
tmux

Package

Name
tmux
Purl
pkg:apk/alpine/tmux?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.1c-r0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2020-27347.json"
Alpine:v3.23
tmux

Package

Name
tmux
Purl
pkg:apk/alpine/tmux?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.1c-r0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2020-27347.json"
Alpine:v3.24
tmux

Package

Name
tmux
Purl
pkg:apk/alpine/tmux?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.1c-r0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2020-27347.json"