Public bug reported:
Hello,
there is a notably newer upstream version available.
Quoting:
---- 8< ----
The 5.0.0 release includes the following changes to the previous
release 4.9.1:
Rewritten authentication mechanism
Add escape %T to show current tty for window
Add escape %O to show number of currently open windows
Use wcwdith() instead of UTF-8 hard-coded tables
New commands:
- auth [on|off]
Provides password protection
- status [top|up|down|bottom] [left|right]
The status window by default is in bottom-left corner.
This command can move status messages to any corner of the screen.
- truecolor [on|off]
- multiinput
Input to multiple windows at the same time
Removed commands:
- time
- debug
- password
- maxwin
- nethack
Fixes:
- Screen buffers ESC keypresses indefinitely
- Crashes after passing through a zmodem transfer
- Fix double -U issue
---- -- ----
5.0.1 is a security fix release. It includes only few code fixes, types
and security issues. It doesn't include any new features.
CVE-2025-46805: do NOT send signals with root privileges
CVE-2025-46804: avoid file existence test information leaks
CVE-2025-46803: apply safe PTY default mode of 0620
CVE-2025-46802: prevent temporary 0666 mode on PTYs in attacher
CVE-2025-23395: reintroduce lf_secreopen() for logfile
buffer overflow due bad strncpy()
uninitialized variables warnings
typos
combining char handling that could lead to a segfault
---- >8 ----
NB: The CVEs do not apply to Ubuntu, as screen is not installed setuid
root.
Please consider packaging the new version.
Thanks in advance! :)
count
** Affects: screen (Ubuntu)
Importance: Undecided
Status: New
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2119528
Title:
Newer version 5.0.1 available - including proper Unicode and Truecolor
support
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/screen/+bug/2119528/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs