The "screen dump" feature in Eterm 0.9.1 and earlier allows attackers to overwrite arbitrary files via a certain character escape sequence when it is echoed to a user's terminal, e.g. when the user views a file containing the malicious sequence.
| Software | From | Fixed in |
|---|---|---|
| michael_jennings / eterm | 0.9.1 | 0.9.1.x |
| michael_jennings / eterm | 0.8.10 | 0.8.10.x |