Known Vulnerabilities for Coreutils by Gnu
Listed below are 10 of the newest known vulnerabilities associated with "Coreutils" by "Gnu".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2017-18018 | In GNU Coreutils through 8.29, chown-core.c in chown and chgrp does not prevent replacement of a plain file with a symlink du... | 4.7 - MEDIUM | 2018-01-04 | 2018-01-19 |
| CVE-2016-2781 | chroot in GNU coreutils, when used with --userspec, allows local users to escape to the parent session via a crafted TIOCSTI ... | 6.5 - MEDIUM | 2017-02-07 | 2023-11-07 |
| CVE-2015-4042 | Integer overflow in the keycompare_mb function in sort.c in sort in GNU Coreutils through 8.23 might allow attackers to cause... | 9.8 - CRITICAL | 2020-01-24 | 2020-02-01 |
| CVE-2015-4041 | The keycompare_mb function in sort.c in sort in GNU Coreutils through 8.23 on 64-bit platforms performs a size calculation wi... | 7.8 - HIGH | 2020-01-24 | 2020-02-01 |
| CVE-2015-1865 | fts.c in coreutils 8.4 allows local users to delete arbitrary files. | 4.7 - MEDIUM | 2017-09-20 | 2017-09-27 |
| CVE-2014-9471 | The parse_datetime function in GNU coreutils allows remote attackers to cause a denial of service (crash) or possibly execute... | 7.5 - HIGH | 2015-01-16 | 2020-12-08 |
| CVE-2013-0223 | The SUSE coreutils-i18n.patch for GNU coreutils allows context-dependent attackers to cause a denial of service (segmentation... | 1.9 - LOW | 2013-11-23 | 2023-02-13 |
| CVE-2013-0222 | The SUSE coreutils-i18n.patch for GNU coreutils allows context-dependent attackers to cause a denial of service (segmentation... | 2.1 - LOW | 2013-11-23 | 2023-02-13 |
| CVE-2013-0221 | The SUSE coreutils-i18n.patch for GNU coreutils allows context-dependent attackers to cause a denial of service (segmentation... | 4.3 - MEDIUM | 2013-11-23 | 2023-02-13 |
| CVE-2009-4135 | The distcheck rule in dist-check.mk in GNU coreutils 5.2.1 through 8.1 allows local users to gain privileges via a symlink at... | 4.4 - MEDIUM | 2009-12-11 | 2023-02-13 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Gnu | Coreutils | 8.9 | All | All | All |
| Application | Gnu | Coreutils | 8.8 | All | All | All |
| Application | Gnu | Coreutils | 8.7 | All | All | All |
| Application | Gnu | Coreutils | 8.6 | All | All | All |
| Application | Gnu | Coreutils | 8.5 | All | All | All |
| Application | Gnu | Coreutils | 8.4 | All | All | All |
| Application | Gnu | Coreutils | 8.31 | All | All | All |
| Application | Gnu | Coreutils | 8.30 | All | All | All |
| Application | Gnu | Coreutils | 8.3 | All | All | All |
| Application | Gnu | Coreutils | 8.29 | All | All | All |
| Application | Gnu | Coreutils | 8.28.1 | All | All | All |
| Application | Gnu | Coreutils | 8.28 | All | All | All |
| Application | Gnu | Coreutils | 8.27 | All | All | All |
| Application | Gnu | Coreutils | 8.26 | All | All | All |
| Application | Gnu | Coreutils | 8.25 | All | All | All |
| Application | Gnu | Coreutils | 8.24 | All | All | All |
| Application | Gnu | Coreutils | 8.23 | All | All | All |
| Application | Gnu | Coreutils | 8.23 | All | All | All |
| Application | Gnu | Coreutils | 8.22 | All | All | All |
| Application | Gnu | Coreutils | 8.21 | All | All | All |