boB Rudis 🇺🇦 on Nostr: 🚨 If you use iTerm2 you *need* to update, and orgs may need to do some IR. If you ...
🚨 If you use iTerm2 you *need* to update, and orgs may need to do some IR. If you used the SSH integration feature, all I/O was logged to /tmp/framer.txt on the remote box (world readable).
IIRC it auto-updates unless disabled.
Does not appear to have a CVE (yet?).
https://iterm2.com/downloads/stable/iTerm2-3_5_11.changelogPublished at
2025-01-03 07:08:43Event JSON
{
"id": "6d542f45d291dd1878aca330931272298aecc536b00b5cd0b3863adb3a779d72",
"pubkey": "e14acd9c27f7e333dd4ed9450a15501a8f2e368b28fc6b08156b882cbc317c9f",
"created_at": 1735888123,
"kind": 1,
"tags": [
[
"proxy",
"https://mastodon.social/users/hrbrmstr/statuses/113763164061068748",
"activitypub"
]
],
"content": "🚨 If you use iTerm2 you *need* to update, and orgs may need to do some IR. If you used the SSH integration feature, all I/O was logged to /tmp/framer.txt on the remote box (world readable). \n\nIIRC it auto-updates unless disabled.\n\nDoes not appear to have a CVE (yet?).\n\nhttps://iterm2.com/downloads/stable/iTerm2-3_5_11.changelog",
"sig": "fd29d554d346a8cfee492b338d07ac000a49638603aacfb053fa6df05754ea84281b592bc2622d8860d82ec2dc46571c2fc1ca5f1c61f00668e86b1a506cd212"
}