Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-5278

Опубликовано: 27 мая 2025
Источник: nvd
CVSS3: 4.4
EPSS Низкий

Описание

A flaw was found in GNU Coreutils. The sort utility's begfield() function is vulnerable to a heap buffer under-read. The program may access memory outside the allocated buffer if a user runs a crafted command using the traditional key format. A malicious input could lead to a crash or leak sensitive data.

EPSS

Процентиль: 3%
0.00016
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-121

Связанные уязвимости

CVSS3: 4.4
ubuntu
7 месяцев назад

A flaw was found in GNU Coreutils. The sort utility's begfield() function is vulnerable to a heap buffer under-read. The program may access memory outside the allocated buffer if a user runs a crafted command using the traditional key format. A malicious input could lead to a crash or leak sensitive data.

CVSS3: 4.4
redhat
7 месяцев назад

A flaw was found in GNU Coreutils. The sort utility's begfield() function is vulnerable to a heap buffer under-read. The program may access memory outside the allocated buffer if a user runs a crafted command using the traditional key format. A malicious input could lead to a crash or leak sensitive data.

CVSS3: 4.4
debian
7 месяцев назад

A flaw was found in GNU Coreutils. The sort utility's begfield() funct ...

suse-cvrf
5 месяцев назад

Security update for coreutils

suse-cvrf
5 месяцев назад

Security update for coreutils

EPSS

Процентиль: 3%
0.00016
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-121