cbcvebase.
CVE-2013-0223
published 2013-11-23

CVE-2013-0223: The SUSE coreutils-i18n.patch for GNU coreutils allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a long…

PriorityP410low1.9CVSS 2.0
AVLACMAuNCNINAP
EPSS
0.51%
39.9th percentile
The SUSE coreutils-i18n.patch for GNU coreutils allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a long string to the join command, when using the -i switch, which triggers a stack-based buffer overflow in the alloca function.

Affected

7 ranges
VendorProductVersion rangeFixed in
debiancoreutils
msrccbl_mariner_1.0_arm
msrccbl_mariner_1.0_x64
opensuseopensuse
opensuseopensuse
opensuseopensuse
redhatenterprise_linux

CVSS provenance

nvdv2.01.9LOWAV:L/AC:M/Au:N/C:N/I:N/A:P
vendor_debian1.9LOW
vendor_msrc1.9LOW
vendor_redhat1.9LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.