Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-5278

Опубликовано: 27 мая 2025
Источник: nvd
CVSS3: 4.4
EPSS Низкий

Описание

A flaw was found in GNU Coreutils. The sort utility's begfield() function is vulnerable to a heap buffer under-read. The program may access memory outside the allocated buffer if a user runs a crafted command using the traditional key format. A malicious input could lead to a crash or leak sensitive data.

EPSS

Процентиль: 2%
0.00014
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-121

Связанные уязвимости

CVSS3: 4.4
ubuntu
23 дня назад

A flaw was found in GNU Coreutils. The sort utility's begfield() function is vulnerable to a heap buffer under-read. The program may access memory outside the allocated buffer if a user runs a crafted command using the traditional key format. A malicious input could lead to a crash or leak sensitive data.

CVSS3: 4.4
redhat
23 дня назад

A flaw was found in GNU Coreutils. The sort utility's begfield() function is vulnerable to a heap buffer under-read. The program may access memory outside the allocated buffer if a user runs a crafted command using the traditional key format. A malicious input could lead to a crash or leak sensitive data.

CVSS3: 4.4
debian
23 дня назад

A flaw was found in GNU Coreutils. The sort utility's begfield() funct ...

CVSS3: 4.4
github
23 дня назад

A flaw was found in GNU Coreutils. The sort utility's begfield() function is vulnerable to a heap buffer under-read. The program may access memory outside the allocated buffer if a user runs a crafted command using the traditional key format. A malicious input could lead to a crash or leak sensitive data.

EPSS

Процентиль: 2%
0.00014
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-121