CVE-2014-9112
Severity
5.0MEDIUM
EPSS
1.3%
top 19.96%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 2
Latest updateMay 17
Description
Heap-based buffer overflow in the process_copy_in function in GNU Cpio 2.11 allows remote attackers to cause a denial of service via a large block value in a cpio archive.
CVSS vector
AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9
🔴Vulnerability Details
4GHSA▶
GHSA-wvrh-73qw-9vj9: Heap-based buffer overflow in the process_copy_in function in GNU Cpio 2↗2022-05-17
CVEList
▶
OSV
▶