5
CVSSv2

CVE-2017-5357

Published: 17/02/2017 Updated: 07/11/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

regex.c in GNU ed prior to 1.14.1 allows malicious users to cause a denial of service (crash) via a malformed command, which triggers an invalid free.

Vulnerable Product Search on Vulmon Subscribe to Product

fedoraproject fedora 25

gnu ed

Vendor Advisories

regexc in GNU ed before 1141 allows attackers to cause a denial of service (crash) via a malformed command, which triggers an invalid free ...
A vulnerability was found in GNU ed An invalid free might occur while parsing specially crafted commands which will make the application crash ...