CVE-2014-9637
Summary
| CVE | CVE-2014-9637 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2017-08-25 18:29:00 UTC |
| Updated | 2017-08-30 01:16:00 UTC |
| Description | GNU patch 2.7.2 and earlier allows remote attackers to cause a denial of service (memory consumption and segmentation fault) via a crafted diff file. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| USN-2651-1: GNU patch vulnerabilities | Ubuntu |
UBUNTU |
www.ubuntu.com |
Patch, Third Party Advisory |
| Mageia Advisory: MGASA-2015-0068 - Updated patch packages fix security vulnerabilities |
CONFIRM |
advisories.mageia.org |
Patch, Third Party Advisory |
| [SECURITY] Fedora 20 Update: patch-2.7.5-1.fc20 |
FEDORA |
lists.fedoraproject.org |
Patch, Third Party Advisory |
| [SECURITY] Fedora 21 Update: patch-2.7.3-1.fc21 |
FEDORA |
lists.fedoraproject.org |
Patch, Third Party Advisory |
| GNU patch 'set_hunkmax()' Function Denial of Service Vulnerability |
BID |
www.securityfocus.com |
Third Party Advisory, VDB Entry |
| Bug 1185262 – CVE-2014-9637 patch: local denial of service with a crafted patch |
CONFIRM |
bugzilla.redhat.com |
Issue Tracking, Patch, Third Party Advisory |
| oss-security - Re: CVE request: directory traversal flaw in patch |
MLIST |
www.openwall.com |
Mailing List, Patch, Third Party Advisory |
| patch.git - GNU patch |
CONFIRM |
git.savannah.gnu.org |
Issue Tracking, Patch, Third Party Advisory |
| GNU patch - Bugs: bug #44051, fuzzed diff can make patch to eat... [Savannah] |
CONFIRM |
savannah.gnu.org |
Issue Tracking, Patch, Third Party Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 671067 EulerOS Security Update for patch (EulerOS-SA-2019-2645)