Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
gnu patch vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2021-45261
An Invalid Pointer vulnerability exists in GNU patch 2.7 via the another_hunk function, which causes a Denial of Service.
Gnu Patch 2.7
4.3
CVSSv2
CVE-2019-20633
GNU patch up to and including 2.7.6 contains a free(p_line[p_end]) Double Free vulnerability in the function another_hunk in pch.c that can cause a denial of service via a crafted patch file. NOTE: this issue exists because of an incomplete fix for CVE-2018-6952.
Gnu Patch
1 Github repository
4.3
CVSSv2
CVE-2016-10713
An issue exists in GNU patch prior to 2.7.6. Out-of-bounds access within pch_write_line() in pch.c can possibly lead to DoS via a crafted input file.
Gnu Patch
4.3
CVSSv2
CVE-2015-1196
GNU patch 2.7.1 allows remote malicious users to write to arbitrary files via a symlink attack in a patch file.
Opensuse Opensuse 13.2
Opensuse Opensuse 13.1
Oracle Solaris 11.2
Gnu Patch 2.7.1
4.3
CVSSv2
CVE-2012-2317
The Debian php_crypt_revamped.patch patch for PHP 5.3.x, as used in the php5 package prior to 5.3.3-7+squeeze4 in Debian GNU/Linux squeeze, the php5 package prior to 5.3.2-1ubuntu4.17 in Ubuntu 10.04 LTS, and the php5 package prior to 5.3.5-1ubuntu7.10 in Ubuntu 11.04, does not p...
Debian Php5-common 5.3.3-7\\+squeeze4
Debian Php5-common
Debian Debian Linux
Canonical Ubuntu Linux 10.04
Canonical Php5 5.3.2-1ubuntu4.17
Canonical Php5
Canonical Php5 5.3.5-1ubuntu7.10
Canonical Ubuntu Linux 11.04
4.3
CVSSv2
CVE-2011-5024
Cross-site scripting (XSS) vulnerability in mmsearch/design in the Mailman/htdig integration patch for Mailman allows remote malicious users to inject arbitrary web script or HTML via the config parameter.
Gnu Mailman 2.1.3
Gnu Mailman 2.1.8
Gnu Mailman 2.1.11
Gnu Mailman 2.1.2
Gnu Mailman 2.1.9
Gnu Mailman 2.0.13
Gnu Mailman 2.1.6
Gnu Mailman 2.1
Gnu Mailman 2.1.10
Gnu Mailman 2.1.1
Gnu Mailman 2.1.12
Gnu Mailman 2.1.7
Gnu Mailman 2.1.4
4.3
CVSSv2
CVE-2008-4989
The _gnutls_x509_verify_certificate function in lib/x509/verify.c in libgnutls in GnuTLS prior to 2.6.1 trusts certificate chains in which the last certificate is an arbitrary trusted, self-signed certificate, which allows man-in-the-middle malicious users to insert a spoofed cer...
Gnu Gnutls
Fedoraproject Fedora 9
Fedoraproject Fedora 8
Canonical Ubuntu Linux 7.10
Canonical Ubuntu Linux 8.10
Canonical Ubuntu Linux 8.04
Canonical Ubuntu Linux 6.06
Debian Debian Linux 4.0
Suse Linux Enterprise Server 11
Suse Linux Enterprise Server 10
Suse Linux Enterprise 11.0
Suse Linux Enterprise 10.0
Opensuse Opensuse
4
CVSSv2
CVE-2023-0687
A vulnerability was found in GNU C Library 2.38. It has been declared as critical. This vulnerability affects the function __monstartup of the file gmon.c of the component Call Graph Monitor. The manipulation leads to buffer overflow. It is recommended to apply a patch to fix thi...
Gnu Glibc
3.3
CVSSv2
CVE-2014-2524
The _rl_tropen function in util.c in GNU readline prior to 6.3 patch 3 allows local users to create or overwrite arbitrary files via a symlink attack on a /var/tmp/rltrace.[PID] file.
Mageia Mageia 4.0
Mageia Mageia 3.0
Gnu Readline 5.2
Gnu Readline 5.1
Gnu Readline 5.0
Gnu Readline 4.3
Gnu Readline
Gnu Readline 6.1
Gnu Readline 4.2
Gnu Readline 4.0
Gnu Readline 2.2
Gnu Readline 2.1
Gnu Readline 6.2
Gnu Readline 6.0
Gnu Readline 4.1
Opensuse Opensuse 12.3
Opensuse Opensuse 13.1
Fedoraproject Fedora 20
2.6
CVSSv2
CVE-2005-1918
The original patch for a GNU tar directory traversal vulnerability (CVE-2002-0399) in Red Hat Enterprise Linux 3 and 2.1 uses an "incorrect optimization" that allows user-assisted malicious users to overwrite arbitrary files via a crafted tar file, probably involving &q...
Gnu Tar 1.13.25
Redhat Enterprise Linux 2.1
Redhat Enterprise Linux Desktop 3.0
Redhat Linux Advanced Workstation 2.1
Redhat Enterprise Linux 3.0
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
camera
bypass
CVE-2024-3592
CVE-2024-37383
CVE-2024-24919
CVE-2024-27822
CVE-2024-36788
CVE-2024-36789
man-in-the-middle
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
NEXT »