Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2015-4042

Опубликовано: 27 апр. 2015
Источник: redhat
CVSS2: 3.7
EPSS Низкий

Описание

Integer overflow in the keycompare_mb function in sort.c in sort in GNU Coreutils through 8.23 might allow attackers to cause a denial of service (application crash) or possibly have unspecified other impact via long strings.

Меры по смягчению последствий

This flaw is triggered by using sort on specially crafted malicious data file. When using sort with trusted inputs, this flaw cannot be triggered.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5coreutilsNot affected
Red Hat Enterprise Linux 6coreutilsAffected
Red Hat Enterprise Linux 7coreutilsAffected

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-119
https://bugzilla.redhat.com/show_bug.cgi?id=1223817coreutils: possible buffer overflow in keycompare_mb()

EPSS

Процентиль: 60%
0.00391
Низкий

3.7 Low

CVSS2

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 6 лет назад

Integer overflow in the keycompare_mb function in sort.c in sort in GNU Coreutils through 8.23 might allow attackers to cause a denial of service (application crash) or possibly have unspecified other impact via long strings.

CVSS3: 9.8
nvd
около 6 лет назад

Integer overflow in the keycompare_mb function in sort.c in sort in GNU Coreutils through 8.23 might allow attackers to cause a denial of service (application crash) or possibly have unspecified other impact via long strings.

CVSS3: 9.8
debian
около 6 лет назад

Integer overflow in the keycompare_mb function in sort.c in sort in GN ...

CVSS3: 9.8
github
больше 3 лет назад

Integer overflow in the keycompare_mb function in sort.c in sort in GNU Coreutils through 8.23 might allow attackers to cause a denial of service (application crash) or possibly have unspecified other impact via long strings.

suse-cvrf
больше 10 лет назад

Security update for coreutils

EPSS

Процентиль: 60%
0.00391
Низкий

3.7 Low

CVSS2