A flaw was found in GNU Coreutils. The sort utility's begfield() function is vulnerable to a heap buffer under-read. The program may access memory outside the allocated buffer if a user runs a crafted command using the traditional key format. A malicious input could lead to a crash or leak sensitive data.
References
Configurations
No configuration.
History
29 May 2025, 18:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
29 May 2025, 16:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
29 May 2025, 13:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
28 May 2025, 15:01
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
28 May 2025, 01:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
27 May 2025, 21:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-27 21:15
Updated : 2025-05-29 18:15
NVD link : CVE-2025-5278
Mitre link : CVE-2025-5278
CVE.ORG link : CVE-2025-5278
JSON object : View
Products Affected
No product.
CWE
CWE-121
Stack-based Buffer Overflow