CVE-2015-5218
Summary
| CVE | CVE-2015-5218 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2015-11-09 16:59:00 UTC |
| Updated | 2018-10-30 16:27:00 UTC |
| Description | Buffer overflow in text-utils/colcrt.c in colcrt in util-linux before 2.27 allows local users to cause a denial of service (crash) via a crafted file, related to the page global variable. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| colcrt: avoid writing beyond array bound [afl & asan] · kerolasa/lelux-utiliteetit@d883d64 · GitHub |
CONFIRM |
github.com |
Issue Tracking, Patch, Third Party Advisory |
| www.kernel.org/pub/linux/utils/util-linux/v2.27/v2.27-ReleaseNotes |
CONFIRM |
www.kernel.org |
Release Notes, Vendor Advisory |
| colcrt: allocate enough space for data moves [afl & asan] · kerolasa/lelux-utiliteetit@70e3fcf · GitHub |
CONFIRM |
github.com |
Issue Tracking, Patch, Third Party Advisory |
| 1259322 – (CVE-2015-5218) CVE-2015-5218 colcrt: global-buffer-overflow |
CONFIRM |
bugzilla.redhat.com |
Issue Tracking, Third Party Advisory |
| Util Linux NG: crash in colcrt |
MLIST |
www.spinics.net |
Exploit |
| openSUSE-SU-2015:1910-1: moderate: Security update for util-linux |
SUSE |
lists.opensuse.org |
Third Party Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 671074 EulerOS Security Update for util-linux (EulerOS-SA-2019-2678)