Search

Found 188 results in 67ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-3833 medium 6.5 6.5 FIX debian debian sles rhel gnuredhat 1mo ago RHSA-2026:20612: gnutls security update (Important)
CVE-2026-1858 medium 4.8 4.8 slesdebian debian gnu 1mo ago wget2 accepts a server certificate with incorrect Key Usage (KU) or Extended Key Usage (EKU). If the attackers compromise a certificate (with the associated private key) issued for a different purpos…
CVE-2026-6238 medium 6.5 6.5 debian debian sles gnu 1mo ago The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.2 and newer fail to validate the RDATA content against the RDATA length in a DNS response when processing…
CVE-2026-6845 medium 5.0 5.0 debian debian sles rhel gnuredhat 1mo ago A flaw was found in binutils, specifically within the `readelf` utility. This vulnerability allows a local attacker to cause a Denial of Service (DoS) by tricking a user into processing a specially c…
CVE-2026-6844 medium 5.5 5.5 debian debian sles rhel gnuredhat 1mo ago A flaw was found in the `readelf` utility of the binutils package. A local attacker could exploit two Denial of Service (DoS) vulnerabilities by providing a specially crafted Executable and Linkable …
CVE-2026-6843 medium 5.5 5.5 FIX debian debian rhel gnuredhat 1mo ago A flaw was found in nano. A local user could exploit a format string vulnerability in the `statusline()` function. By creating a directory with a name containing `printf` specifiers, the application …
CVE-2026-32772 medium 4.7 4.7 FIX debian debian gnu 3mo ago telnet in GNU inetutils through 2.7 allows servers to read arbitrary environment variables from clients via NEW_ENVIRON SEND USERVAR.
CVE-2025-61154 medium 6.5 6.5 gnu 3mo ago Heap buffer overflow vulnerability in LibreDWG versions v0.13.3.7571 up to v0.13.3.7835 allows a crafted DWG file to cause a Denial of Service (DoS) via the function decompress_R2004_section at decod…
CVE-2025-11840 medium 5.5 5.5 FIX debian debian sles gnu 8mo ago A weakness has been identified in GNU Binutils 2.45. The affected element is the function vfinfo of the file ldmisc.c. Executing a manipulation can lead to out-of-bounds read. The attack can only be …
CVE-2025-11839 medium 5.5 5.5 FIX debian debian sles gnu 8mo ago A security flaw has been discovered in GNU Binutils 2.45. Impacted is the function tg_tag_type of the file prdbg.c. Performing a manipulation results in unchecked return value. The attack needs to be…
CVE-2025-11495 medium 5.5 5.5 FIX debian debian sles gnu 8mo ago A vulnerability was determined in GNU Binutils 2.45. The affected element is the function elf_x86_64_relocate_section of the file elf64-x86-64.c of the component Linker. This manipulation causes heap…
CVE-2025-11494 medium 5.5 5.5 FIX debian debian sles gnu 8mo ago A vulnerability was found in GNU Binutils 2.45. Impacted is the function _bfd_x86_elf_late_size_sections of the file bfd/elfxx-x86.c of the component Linker. The manipulation results in out-of-bounds…
CVE-2025-11414 medium 5.5 5.5 FIX debian debian sles gnu 8mo ago A vulnerability was determined in GNU Binutils 2.45. Affected by this vulnerability is the function get_link_hash_entry of the file bfd/elflink.c of the component Linker. This manipulation causes out…
CVE-2025-11413 medium 5.5 5.5 FIX debian debian sles gnu 8mo ago A vulnerability was found in GNU Binutils 2.45. Affected is the function elf_link_add_object_symbols of the file bfd/elflink.c of the component Linker. The manipulation results in out-of-bounds read.…
CVE-2025-11412 medium 5.5 5.5 FIX debian debian sles gnu 8mo ago A vulnerability has been found in GNU Binutils 2.45. This impacts the function bfd_elf_gc_record_vtentry of the file bfd/elflink.c of the component Linker. The manipulation leads to out-of-bounds rea…
CVE-2025-11081 medium 5.5 5.5 FIX debian debian sles gnu 8mo ago A vulnerability was detected in GNU Binutils 2.45. This issue affects the function dump_dwarf_section of the file binutils/objdump.c. Performing manipulation results in out-of-bounds read. The attack…
CVE-2025-32989 medium 5.3 5.3 FIX rheldebian debian sles gnuredhat 9mo ago Moderate: gnutls security, bug fix, and enhancement update
CVE-2025-8746 medium 5.5 5.5 debian debian sles gnu 10mo ago A vulnerability, which was classified as problematic, was found in GNU libopts up to 27.6. Affected is the function __strstr_sse2. The manipulation leads to memory corruption. Local access is require…
CVE-2025-8224 medium 5.5 5.5 FIX debian debian sles gnu 10mo ago A vulnerability has been found in GNU Binutils 2.44 and classified as problematic. This vulnerability affects the function bfd_elf_get_str_section of the file bfd/elf.c of the component BFD Library. …
CVE-2025-3198 medium 5.5 5.5 FIX debian debian sles gnu 1y ago A vulnerability has been found in GNU Binutils 2.43/2.44 and classified as problematic. Affected by this vulnerability is the function display_info of the file binutils/bucomm.c of the component objd…
CVE-2024-33600 medium 5.9 5.9 FIX rhel rockydebian debian gnunetapp 2y ago RHSA-2024:3344: glibc security update (Important)
CVE-2023-4806 medium 5.9 5.9 FIX rhel rocky sles gnuredhat 2y ago RHSA-2023:5455: glibc security update (Important)
CVE-2023-6780 medium 5.3 5.3 FIX debian debian slesfedora fedora gnu 2y ago An integer overflow was found in the __vsyslog_internal function of the glibc library. This function is called by the syslog and vsyslog functions. This issue occurs when these functions are called w…
CVE-2023-4527 medium 6.5 6.5 FIX rhel rocky sles gnuredhat 3y ago RHSA-2023:5455: glibc security update (Important)
CVE-2017-17440 medium 6.5 6.5 FIX arch archdebian debian gnu 9y ago GNU Libextractor 1.6 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted GIF, IT (Impulse Tracker), NSFE, S3M (Scream Tracker 3), SID, …
CVE-2017-17123 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago The coff_slurp_reloc_table function in coffcode.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, allows remote attackers to cause a denial of service…
CVE-2017-17080 medium 5.5 5.5 FIX debian debian gnu 9y ago elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, does not validate sizes of core notes, which allows remote attackers to cause a denial of servic…
CVE-2017-1000383 medium 5.5 5.5 slesarch arch gnu 9y ago GNU Emacs version 25.3.1 (and other versions most likely) ignores umask when creating a backup save file ("[ORIGINAL_FILENAME]~") resulting in files that may be world readable or otherwise accessible…
CVE-2017-15939 medium 5.5 5.5 FIX debian debian gnu 9y ago dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, mishandles NULL files in a .debug_line file table, which allows remote attackers to cause a den…
CVE-2017-15922 medium 5.5 5.5 FIX arch archdebian debian gnu 9y ago In GNU Libextractor 1.4, there is an out-of-bounds read in the EXTRACTOR_dvi_extract_method function in plugins/dvi_extractor.c.
CVE-2017-15671 medium 5.9 5.9 FIX arch arch slesdebian debian gnu 9y ago The glob function in glob.c in the GNU C Library (aka glibc or libc6) before 2.27, when invoked with GLOB_TILDE, could skip freeing allocated memory when processing the ~ operator with a long user na…
CVE-2011-5320 medium 6.2 6.2 FIX debian debian gnu 9y ago scanf and related functions in glibc before 2.15 allow local users to cause a denial of service (segmentation fault) via a large string of 0s.
CVE-2017-15266 medium 5.5 5.5 FIX debian debian gnu 9y ago In GNU Libextractor 1.4, there is a Divide-By-Zero in EXTRACTOR_wav_extract_method in wav_extractor.c via a zero sample rate.
CVE-2017-15225 medium 5.5 5.5 FIX debian debian sles gnu 9y ago _bfd_dwarf2_cleanup_debug_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (memory …
CVE-2017-15025 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (divide-by-zero error …
CVE-2017-15024 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago find_abstract_instance_name in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (infinite r…
CVE-2017-15023 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago read_formatted_entries in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, does not properly validate the format count, which allows remote atta…
CVE-2017-15022 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, does not validate the DW_AT_name data type, which allows remote attackers to cause a denial of …
CVE-2017-15021 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago bfd_get_debug_link_info_1 in opncls.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (heap-based b…
CVE-2017-14974 medium 5.5 5.5 FIX debian debian sles gnu 9y ago The *_get_synthetic_symtab functions in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, mishandle the failure of a certain canonicalization step, which all…
CVE-2017-14940 medium 5.5 5.5 FIX debian debian sles gnu 9y ago scan_unit_for_symbols in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (NULL pointer der…
CVE-2017-14939 medium 5.5 6.5 EXPFIX debian debian sles gnu 9y ago decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, mishandles a length calculation, which allows remote attackers to cause a d…
CVE-2017-14938 medium 5.5 5.5 FIX debian debian sles gnu 9y ago _bfd_elf_slurp_version_tables in elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (excessive m…
CVE-2017-14934 medium 5.5 5.5 FIX debian debian sles gnu 9y ago process_debug_info in dwarf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (infinite loop) via a…
CVE-2017-14933 medium 5.5 5.5 FIX debian debian sles gnu 9y ago read_formatted_entries in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (infinite loop) …
CVE-2017-14932 medium 5.5 5.5 FIX debian debian sles gnu 9y ago decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (infinite loop) via a …
CVE-2017-14930 medium 5.5 5.5 FIX debian debian sles gnu 9y ago Memory leak in decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (memory…
CVE-2015-1865 medium 5.1 5.1 FIX debian debian gnu 9y ago fts.c in coreutils 8.4 allows local users to delete arbitrary files.
CVE-2017-14529 medium 5.5 5.5 FIX debian debian sles gnu 9y ago The pe_print_idata function in peXXigen.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, mishandles HintName vector entries, which allows remote attack…
CVE-2017-12133 medium 5.9 5.9 FIX arch arch slesdebian debian gnu 9y ago Use-after-free vulnerability in the clntudp_call function in sunrpc/clnt_udp.c in the GNU C Library (aka glibc or libc6) before 2.26 allows remote attackers to have unspecified impact via vectors rel…
CVE-2017-14130 medium 5.5 5.5 FIX debian debian sles gnu 9y ago The _bfd_elf_parse_attributes function in elf-attrs.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of servi…
CVE-2017-14129 medium 5.5 5.5 FIX debian debian sles gnu 9y ago The read_section function in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (parse_comp_u…
CVE-2017-14128 medium 5.5 5.5 FIX debian debian sles gnu 9y ago The decode_line_info function in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (read_1_b…
CVE-2017-13757 medium 5.5 5.5 FIX debian debian sles gnu 9y ago The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, does not validate the PLT section size, which allows remote attackers to cause a denial of service (heap-ba…
CVE-2017-13734 medium 6.5 6.5 FIX slesdebian debian gnu 9y ago There is an illegal address access in the _nc_safe_strcat function in strings.c in ncurses 6.0 that will lead to a remote denial of service attack.
CVE-2017-13733 medium 6.5 6.5 FIX slesdebian debian gnu 9y ago There is an illegal address access in the fmt_entry function in progs/dump_entry.c in ncurses 6.0 that might lead to a remote denial of service attack.
CVE-2017-13732 medium 6.5 6.5 FIX slesdebian debian gnu 9y ago There is an illegal address access in the function dump_uses() in progs/dump_entry.c in ncurses 6.0 that might lead to a remote denial of service attack.
CVE-2017-13731 medium 6.5 6.5 FIX slesdebian debian gnu 9y ago There is an illegal address access in the function postprocess_termcap() in parse_entry.c in ncurses 6.0 that will lead to a remote denial of service attack.
CVE-2017-13730 medium 6.5 6.5 FIX slesdebian debian gnu 9y ago There is an illegal address access in the function _nc_read_entry_source() in progs/tic.c in ncurses 6.0 that might lead to a remote denial of service attack.
CVE-2017-13729 medium 6.5 6.5 FIX slesdebian debian gnu 9y ago There is an illegal address access in the _nc_save_str function in alloc_entry.c in ncurses 6.0. It will lead to a remote denial of service attack.
CVE-2017-13716 medium 5.5 5.5 debian debian sles gnu 9y ago The C++ symbol demangler routine in cplus-dem.c in libiberty, as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (excessive memory allocation and application cr…
CVE-2014-9637 medium 5.5 5.5 FIX fedora fedoraubuntu ubuntudebian debian gnu 9y ago GNU patch 2.7.2 and earlier allows remote attackers to cause a denial of service (memory consumption and segmentation fault) via a crafted diff file.
CVE-2017-12967 medium 6.5 6.5 FIX debian debian sles gnu 9y ago The getsym function in tekhex.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (stack-based buffer…
CVE-2017-12132 medium 5.9 5.9 FIX arch archdebian debian gnu 9y ago The DNS stub resolver in the GNU C Library (aka glibc or libc6) before version 2.26, when EDNS support is enabled, will solicit large UDP responses from name servers, potentially simplifying off-path…
CVE-2017-11671 medium 4.0 4.0 sles gnu 9y ago Under certain circumstances, the ix86_expand_builtin function in i386.c in GNU Compiler Collection (GCC) version 4.6, 4.7, 4.8, 4.9, 5 before 5.5, and 6 before 6.4 will generate instruction sequences…
CVE-2017-10792 medium 6.5 6.5 FIX debian debian gnu 9y ago There is a NULL Pointer Dereference in the function ll_insert() of the libpspp library in GNU PSPP before 0.11.0. For example, a crash was observed within the library code when attempting to convert …
CVE-2017-10791 medium 6.5 6.5 FIX debian debian gnu 9y ago There is an Integer overflow in the hash_int function of the libpspp library in GNU PSPP before 0.11.0. For example, a crash was observed within the library code when attempting to convert invalid SP…
CVE-2017-9955 medium 5.5 5.5 FIX debian debian sles gnu 9y ago The get_build_id function in opncls.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, allows remote attackers to cause a denial of service (heap-based b…
CVE-2017-9954 medium 5.5 5.5 FIX debian debian gnu 9y ago The getvalue function in tekhex.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, allows remote attackers to cause a denial of service (stack-based buff…
CVE-2017-9778 medium 5.5 5.5 FIX slesdebian debian gnu 9y ago GNU Debugger (GDB) 8.0 and earlier fails to detect a negative length field in a DWARF section. A malformed section in an ELF binary or a core file can cause GDB to repeatedly allocate memory until a …
CVE-2017-9044 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago The print_symbol_for_build_attribute function in readelf.c in GNU Binutils 2017-04-12 allows remote attackers to cause a denial of service (invalid read and SEGV) via a crafted ELF file.
CVE-2017-9041 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago GNU Binutils 2.28 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file, related to MIPS GOT mishandling in the process_mips_…
CVE-2017-9040 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago GNU Binutils 2017-04-03 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash), related to the process_mips_specific function in readelf.c, via a crafte…
CVE-2017-9039 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago GNU Binutils 2.28 allows remote attackers to cause a denial of service (memory consumption) via a crafted ELF file with many program headers, related to the get_program_headers function in readelf.c.
CVE-2017-9038 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago GNU Binutils 2.28 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file, related to the byte_get_little_endian function in el…
CVE-2017-8421 medium 5.5 5.5 FIX debian debian sles gnu 9y ago The function coff_set_alignment_hook in coffcode.h in Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has a memory leak vulnerability which can cause memory ex…
CVE-2017-7299 medium 5.5 5.5 FIX debian debian sles gnu 9y ago The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has an invalid read (of size 8) because the code to emit relocs (bfd_elf_final_link function in bfd/elflink…
CVE-2017-7224 medium 5.5 5.5 FIX debian debianarch arch gnu 9y ago The find_nearest_line function in objdump in GNU Binutils 2.28 is vulnerable to an invalid write (of size 1) while disassembling a corrupt binary that contains an empty function name, leading to a pr…
CVE-2017-7210 medium 5.5 5.5 FIX debian debianarch arch gnu 9y ago objdump in GNU Binutils 2.28 is vulnerable to multiple heap-based buffer over-reads (of size 1 and size 8) while handling corrupt STABS enum type strings in a crafted object file, leading to program …
CVE-2017-7209 medium 5.5 5.5 FIX debian debianarch arch gnu 9y ago The dump_section_as_bytes function in readelf in GNU Binutils 2.28 accesses a NULL pointer while reading section contents in a corrupt binary, leading to a program crash.
CVE-2015-8985 medium 5.9 5.9 FIX slesdebian debian gnu 9y ago The pop_fail_stack function in the GNU C Library (aka glibc or libc6) allows context-dependent attackers to cause a denial of service (assertion failure and application crash) via vectors related to …
CVE-2015-8984 medium 5.9 5.9 FIX debian debian gnu 9y ago The fnmatch function in the GNU C Library (aka glibc or libc6) before 2.22 might allow context-dependent attackers to cause a denial of service (application crash) via a malformed pattern, which trig…
CVE-2017-6966 medium 5.5 5.5 FIX debian debianarch arch gnu 9y ago readelf in GNU Binutils 2.28 has a use-after-free (specifically read-after-free) error while processing multiple, relocated sections in an MSP430 binary. This is caused by mishandling of an invalid s…
CVE-2017-6965 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago readelf in GNU Binutils 2.28 writes to illegal addresses while processing corrupt input files containing symbol-difference relocations, leading to a heap-based buffer overflow.
CVE-2017-6508 medium 6.1 6.1 FIX arch arch slesdebian debian gnu 9y ago CRLF injection vulnerability in the url_parse function in url.c in Wget through 1.19.1 allows remote attackers to inject arbitrary HTTP headers via CRLF sequences in the host subcomponent of a URL.
CVE-2016-10228 medium 5.9 5.9 FIX slesdebian debian rocky gnu 9y ago RHSA-2021:1585: glibc security, bug fix, and enhancement update (Moderate)
CVE-2016-4493 medium 5.5 5.5 FIX slesdebian debian gnu 9y ago The demangle_template_value_parm and do_hpacc_template_literal functions in cplus-dem.c in libiberty allow remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted b…
CVE-2016-4492 medium 4.4 4.4 FIX slesdebian debian gnu 9y ago Buffer overflow in the do_type function in cplus-dem.c in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary.
CVE-2016-4491 medium 5.5 5.5 FIX slesdebian debian gnu 9y ago The d_print_comp function in cp-demangle.c in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary, which triggers infinite recursion and…
CVE-2016-4490 medium 5.5 5.5 FIX slesdebian debian gnu 9y ago Integer overflow in cp-demangle.c in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary, related to inconsistent use of the long and in…
CVE-2016-4489 medium 5.5 5.5 FIX slesdebian debian gnu 9y ago Integer overflow in the gnu_special function in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary, related to the "demangling of virtu…
CVE-2016-4488 medium 5.5 5.5 FIX slesdebian debian gnu 9y ago Use-after-free vulnerability in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary, related to "ktypevec."
CVE-2016-4487 medium 5.5 5.5 FIX slesdebian debian gnu 9y ago Use-after-free vulnerability in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary, related to "btypevec."
CVE-2016-2781 medium 4.6 4.6 FIX debian debian gnu 9y ago chroot in GNU coreutils, when used with --userspec, allows local users to escape to the parent session via a crafted TIOCSTI ioctl call, which pushes characters to the terminal's input buffer.
CVE-2016-9401 medium 5.5 5.5 FIX debian debian sles rhel gnu 10y ago popd in bash might allow local users to bypass the restricted shell and cause a use-after-free via a crafted address.
CVE-2016-8605 medium 5.3 5.3 FIX slesarch archfedora fedora gnu 10y ago The mkdir procedure of GNU Guile temporarily changed the process' umask to zero. During that time window, in a multithreaded application, other threads could end up creating files with insecure permi…
CVE-2016-4429 medium 5.9 5.9 FIX slesdebian debianubuntu ubuntu gnu 10y ago Stack-based buffer overflow in the clntudp_call function in sunrpc/clnt_udp.c in the GNU C Library (aka glibc or libc6) allows remote servers to cause a denial of service (crash) or possibly unspecif…
CVE-2016-4008 medium 5.9 5.9 FIX slesdebian debiansuse suse gnu 10y ago The _asn1_extract_der_octet function in lib/decoding.c in GNU Libtasn1 before 4.8, when used without the ASN1_DECODE_FLAG_STRICT_DER flag, allows remote attackers to cause a denial of service (infini…
CVE-2016-2037 medium 6.5 6.5 FIX slesdebian debian gnu 10y ago The cpio_safer_name_suffix function in util.c in cpio 2.11 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted cpio file.
CVE-2015-8777 medium 5.5 5.5 FIX slesdebian debian gnu 11y ago The process_envvars function in elf/rtld.c in the GNU C Library (aka glibc or libc6) before 2.23 allows local users to bypass a pointer-guarding protection mechanism via a zero value of the LD_POINTE…