Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-5278

Опубликовано: 27 мая 2025
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS3: 4.4

Описание

A flaw was found in GNU Coreutils. The sort utility's begfield() function is vulnerable to a heap buffer under-read. The program may access memory outside the allocated buffer if a user runs a crafted command using the traditional key format. A malicious input could lead to a crash or leak sensitive data.

РелизСтатусПримечание
devel

needs-triage

esm-infra-legacy/trusty

needs-triage

esm-infra/bionic

needs-triage

esm-infra/focal

needs-triage

esm-infra/xenial

needs-triage

focal

ignored

end of standard support, was needs-triage
jammy

needs-triage

noble

needs-triage

oracular

ignored

end of life, was needs-triage
plucky

needs-triage

Показывать по

EPSS

Процентиль: 3%
0.00018
Низкий

4.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.4
redhat
3 месяца назад

A flaw was found in GNU Coreutils. The sort utility's begfield() function is vulnerable to a heap buffer under-read. The program may access memory outside the allocated buffer if a user runs a crafted command using the traditional key format. A malicious input could lead to a crash or leak sensitive data.

CVSS3: 4.4
nvd
2 месяца назад

A flaw was found in GNU Coreutils. The sort utility's begfield() function is vulnerable to a heap buffer under-read. The program may access memory outside the allocated buffer if a user runs a crafted command using the traditional key format. A malicious input could lead to a crash or leak sensitive data.

CVSS3: 4.4
debian
2 месяца назад

A flaw was found in GNU Coreutils. The sort utility's begfield() funct ...

suse-cvrf
23 дня назад

Security update for coreutils

suse-cvrf
24 дня назад

Security update for coreutils

EPSS

Процентиль: 3%
0.00018
Низкий

4.4 Medium

CVSS3