{"id":"CVE-2022-46663","details":"In GNU Less before 609, crafted data can result in \"less -R\" not filtering ANSI escape sequences sent to the terminal.","modified":"2026-08-18T16:22:59.317852Z","published":"2023-02-07T00:00:00Z","related":["ALSA-2023:3725","SUSE-SU-2023:0348-1","openSUSE-SU-2024:12671-1"],"database_specific":{"cna_assigner":"mitre","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/46xxx/CVE-2022-46663.json"},"references":[{"type":"WEB","url":"http://www.greenwoodsoftware.com/less/news.609.html"},{"type":"WEB","url":"https://www.openwall.com/lists/oss-security/2023/02/07/7"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/46xxx/CVE-2022-46663.json"},{"type":"ADVISORY","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LR7AUWB34JD4PCW3HHASBEDGGHFWPAQP/"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-46663"},{"type":"ADVISORY","url":"https://security.gentoo.org/glsa/202310-11"},{"type":"FIX","url":"https://github.com/gwsw/less/commit/a78e1351113cef564d790a730d657a321624d79c"},{"type":"ARTICLE","url":"http://www.openwall.com/lists/oss-security/2023/02/07/7"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/gwsw/less","events":[{"introduced":"0f810ef16781bf0f59690be63af876bddabf68bf"},{"fixed":"ece2600cb0f0c8339cfe00ffa8e2dbc28df38622"},{"fixed":"a78e1351113cef564d790a730d657a321624d79c"}],"database_specific":{"cpe":"cpe:2.3:a:gnu:less:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"566"},{"fixed":"609"}],"source":["CPE_RANGE","REFERENCES"]}}],"versions":["v608-rel","v608","v607","v605","v603","v602","v601","v600","v598","v597","v596","v595","v594","v592","v591","v590-rel","v590","v586","v585","v584","v581-rel","v581","v583","v582","v580","v579","v578","v577","v576","v575","v574","v573","v572","v571","v570","v569","v568","v567","v566"],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-46663.json","vanir_signatures_modified":"2026-08-18T16:22:59Z","vanir_signatures":[{"target":{"file":"line.c"},"deprecated":false,"digest":{"line_hashes":["58901671348007438632014854079711613025","85119929159271542508296639310582854426","166317630355287311982970997246853152845","69188629071763626043601682929949479295","223511038062624614185857981645939365614"],"threshold":0.9},"id":"CVE-2022-46663-12cbc366","signature_type":"Line","signature_version":"v1","source":"https://github.com/gwsw/less/commit/a78e1351113cef564d790a730d657a321624d79c"},{"digest":{"line_hashes":["272575288985300010572020423734929327037"],"threshold":0.9},"id":"CVE-2022-46663-96bbfcd0","signature_type":"Line","signature_version":"v1","source":"https://github.com/gwsw/less/commit/ece2600cb0f0c8339cfe00ffa8e2dbc28df38622","target":{"file":"version.c"},"deprecated":false}]}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}