A flaw was found in GNU Coreutils. The sort utility's begfield() function is vulnerable to a heap buffer under-read. The program may access memory outside the allocated buffer if a user runs a crafted command using the traditional key format. A malicious input could lead to a crash or leak sensitive data.
References
Configurations
No configuration.
History
29 May 2025, 18:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-27 21:15
Updated : 2025-05-29 18:15
NVD link : CVE-2025-5278
Mitre link : CVE-2025-5278
CVE.ORG link : CVE-2025-5278
JSON object : View
Products Affected
No product.
CWE
CWE-121
Stack-based Buffer Overflow