A vulnerability has been identified in rxvt-unicode, which could be exploited by local attackers to bypass security policies. This flaw is due to an error where permissions are not correctly updated on the tty device (world-readable and world-writable), which could be exploited by attackers to gain read/write access to the devices.