GNU Patch CVE-2016-10713 Denial of Service Vulnerability
BID:103063
CVE-2016-10713 |Info
GNU Patch CVE-2016-10713 Denial of Service Vulnerability
| Bugtraq ID: | 103063 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2016-10713 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 13 2018 12:00AM |
| Updated: | Feb 13 2018 12:00AM |
| Credit: | Hanno Boeck |
| Vulnerable: |
GNU Patch 2.7.5 GNU Patch 2.7.4 GNU Patch 2.7.3 GNU Patch 2.7.1 |
| Not Vulnerable: |
GNU Patch 2.7.6 |
Discussion
GNU Patch CVE-2016-10713 Denial of Service Vulnerability
GNU Patch is prone to a denial-of-service vulnerability.
Attackers can exploit this issue to crash the application, denying service to legitimate users.
Versions prior to GNU Patch 2.7.6 are vulnerable.
GNU Patch is prone to a denial-of-service vulnerability.
Attackers can exploit this issue to crash the application, denying service to legitimate users.
Versions prior to GNU Patch 2.7.6 are vulnerable.
Solution / Fix
GNU Patch CVE-2016-10713 Denial of Service Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
GNU Patch CVE-2016-10713 Denial of Service Vulnerability
References:
References:
- bug #53132: segfault / null pointer read (Savannah)
- Bug 1545405 - (CVE-2016-10713) CVE-2016-10713 patch: Out-of-bounds access in pch (Redhat)
- CVE-2016-10713 (Red Hat)
- Fix out-of-bounds access to lines in a patch (Gnu.org)
- GNU patch Homepage (GNU)