CVE-2013-0221
MEDIUM 4.3EPSS 7.2%
The SUSE coreutils-i18n.patch for GNU coreutils allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a long string to the sort command, when using the (1) -d or (2) -M switch, which triggers a stack-based buffer overflow in the alloca function.
- CVSS v2.0
- 4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P - EPSS
- 7.24% chance of exploitation in the next 30 days, 94th percentile
- Published
- 2013-11-23
- Updated
- 2024-08-06