5.5
CVSSv3

CVE-2014-9637

Published: 25/08/2017 Updated: 30/08/2017
CVSS v2 Base Score: 7.1 | Impact Score: 6.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 632
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C

Vulnerability Summary

GNU patch 2.7.2 and previous versions allows remote malicious users to cause a denial of service (memory consumption and segmentation fault) via a crafted diff file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

fedoraproject fedora 21

fedoraproject fedora 20

mageia mageia 4.0

canonical ubuntu linux 14.04

canonical ubuntu linux 14.10

canonical ubuntu linux 12.04

gnu patch

Vendor Advisories

Several security issues were fixed in GNU patch ...
Debian Bug report logs - #775873 patch: CVE-2015-1395: directory traversal via file rename Package: patch; Maintainer for patch is Laszlo Boszormenyi (GCS) <gcs@debianorg>; Source for patch is src:patch (PTS, buildd, popcon) Reported by: Jakub Wilk <jwilk@debianorg> Date: Tue, 20 Jan 2015 22:51:01 UTC Severity: gr ...
Debian Bug report logs - #775901 patch: CVE-2015-1396: another directory traversal via symlinks Package: patch; Maintainer for patch is Laszlo Boszormenyi (GCS) <gcs@debianorg>; Source for patch is src:patch (PTS, buildd, popcon) Reported by: Jakub Wilk <jwilk@debianorg> Date: Wed, 21 Jan 2015 10:42:06 UTC Severit ...
GNU patch 272 and earlier allows remote attackers to cause a denial of service (memory consumption and segmentation fault) via a crafted diff file ...