CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
AV:L/AC:L/Au:N/C:N/I:N/A:P
AI Score
Confidence
High
EPSS
Percentile
5.1%
Buffer overflow in text-utils/colcrt.c in colcrt in util-linux before 2.27 allows local users to cause a denial of service (crash) via a crafted file, related to the page global variable.
Vendor | Product | Version | CPE |
---|---|---|---|
kernel | util-linux | * | cpe:2.3:a:kernel:util-linux:*:*:*:*:*:*:*:* |
opensuse | opensuse | 13.1 | cpe:2.3:o:opensuse:opensuse:13.1:*:*:*:*:*:*:* |
opensuse | opensuse | 13.2 | cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:* |
opensuse_project | leap | 42.1 | cpe:2.3:o:opensuse_project:leap:42.1:*:*:*:*:*:*:* |
lists.opensuse.org/opensuse-updates/2015-11/msg00035.html
www.spinics.net/lists/util-linux-ng/msg11873.html
bugzilla.redhat.com/show_bug.cgi?id=1259322
github.com/kerolasa/lelux-utiliteetit/commit/70e3fcf293c1827a2655a86584ab13075124a8a8
github.com/kerolasa/lelux-utiliteetit/commit/d883d64d96ab9bef510745d064a351145b9babec
www.kernel.org/pub/linux/utils/util-linux/v2.27/v2.27-ReleaseNotes