vulnerability
FreeBSD: VID-5b2eac07-8b4d-11ed-8b23-a0f3c100ae18 (CVE-2022-4170): rxvt-unicode is vulnerable to a remote code execution
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 10 | (AV:N/AC:L/Au:N/C:C/I:C/A:C) | Jan 3, 2023 | Jan 9, 2023 | Dec 10, 2025 |
Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Jan 3, 2023
Added
Jan 9, 2023
Modified
Dec 10, 2025
Description
Marc Lehmann reports: The biggest issue is resolving CVE-2022-4170, which allows command execution inside urxvt from within the terminal (that means anything that can output text in the terminal can start commands in the context of the urxvt process, even remotely).
Solution
freebsd-upgrade-package-rxvt-unicode
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.