The VteTerminal in gnome-terminal (vte) before 0.32.2 allows remote authenticated users to cause a denial of service (long loop and CPU consumption) via an escape sequence with a large repeat count value.
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "libvte-common",
"binary_version": "1:0.28.2-5ubuntu1"
},
{
"binary_name": "libvte-dev",
"binary_version": "1:0.28.2-5ubuntu1"
},
{
"binary_name": "libvte-doc",
"binary_version": "1:0.28.2-5ubuntu1"
},
{
"binary_name": "libvte9",
"binary_version": "1:0.28.2-5ubuntu1"
},
{
"binary_name": "libvte9-udeb",
"binary_version": "1:0.28.2-5ubuntu1"
},
{
"binary_name": "python-vte",
"binary_version": "1:0.28.2-5ubuntu1"
}
]
}