CVE-2015-5218
published 2015-11-09CVE-2015-5218: Buffer overflow in text-utils/colcrt.c in colcrt in util-linux before 2.27 allows local users to cause a denial of service (crash) via a crafted file, related…
PriorityP47low2.1CVSS 2.0
AVLACLAuNCNINAP
EPSS
0.60%
45.0th percentile
Buffer overflow in text-utils/colcrt.c in colcrt in util-linux before 2.27 allows local users to cause a denial of service (crash) via a crafted file, related to the page global variable.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | util-linux | < util-linux 2.27-1 (bookworm) | util-linux 2.27-1 (bookworm) |
| kernel | util-linux | <= 2.22 | — |
| kernel | util-linux | >= 0 < 2.27-1 | 2.27-1 |
| kernel | util-linux | >= 0 < 2.27-1 | 2.27-1 |
| kernel | util-linux | >= 0 < 2.27-1 | 2.27-1 |
| kernel | util-linux | >= 0 < 2.27-1 | 2.27-1 |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
| opensuse_project | leap | — | — |
CVSS provenance
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:N/A:P
osv2.1LOW
vendor_debian2.1LOW
vendor_redhat2.1LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
colcrt: global-buffer-overflow
vendor_redhat·2015-09-02·CVSS 2.1
CVE-2015-5218 [LOW] CWE-119 colcrt: global-buffer-overflow
colcrt: global-buffer-overflow
Buffer overflow in text-utils/colcrt.c in colcrt in util-linux before 2.27 allows local users to cause a denial of service (crash) via a crafted file, related to the page global variable.
Statement: Red Hat Product Security has rated this issue as having Low security impact. This issue is not currently planned to be addressed in future updates. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.
Package: util-linux (Red Hat Enterprise Linux 5) - Will not fix
Package: util-linux-ng (Red Hat Enterprise Linux 6) - Will not fix
Package: util-linux (Red Hat Enterprise Linux 7) - Will not fix
Debian
CVE-2015-5218: util-linux - Buffer overflow in text-utils/colcrt.c in colcrt in util-linux before 2.27 allow...
vendor_debian·2015·CVSS 2.1
CVE-2015-5218 [LOW] CVE-2015-5218: util-linux - Buffer overflow in text-utils/colcrt.c in colcrt in util-linux before 2.27 allow...
Buffer overflow in text-utils/colcrt.c in colcrt in util-linux before 2.27 allows local users to cause a denial of service (crash) via a crafted file, related to the page global variable.
Scope: local
bookworm: resolved (fixed in 2.27-1)
bullseye: resolved (fixed in 2.27-1)
forky: resolved (fixed in 2.27-1)
sid: resolved (fixed in 2.27-1)
trixie: resolved (fixed in 2.27-1)
GHSA
GHSA-8f2v-6436-599m: Buffer overflow in text-utils/colcrt
ghsa_unreviewed·2022-05-14
CVE-2015-5218 [LOW] CWE-119 GHSA-8f2v-6436-599m: Buffer overflow in text-utils/colcrt
Buffer overflow in text-utils/colcrt.c in colcrt in util-linux before 2.27 allows local users to cause a denial of service (crash) via a crafted file, related to the page global variable.
OSV
CVE-2015-5218: Buffer overflow in text-utils/colcrt
osv·2015-11-09·CVSS 2.1
CVE-2015-5218 [LOW] CVE-2015-5218: Buffer overflow in text-utils/colcrt
Buffer overflow in text-utils/colcrt.c in colcrt in util-linux before 2.27 allows local users to cause a denial of service (crash) via a crafted file, related to the page global variable.
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-updates/2015-11/msg00035.htmlhttp://www.spinics.net/lists/util-linux-ng/msg11873.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=1259322https://github.com/kerolasa/lelux-utiliteetit/commit/70e3fcf293c1827a2655a86584ab13075124a8a8https://github.com/kerolasa/lelux-utiliteetit/commit/d883d64d96ab9bef510745d064a351145b9babechttps://www.kernel.org/pub/linux/utils/util-linux/v2.27/v2.27-ReleaseNoteshttp://lists.opensuse.org/opensuse-updates/2015-11/msg00035.htmlhttp://www.spinics.net/lists/util-linux-ng/msg11873.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=1259322https://github.com/kerolasa/lelux-utiliteetit/commit/70e3fcf293c1827a2655a86584ab13075124a8a8https://github.com/kerolasa/lelux-utiliteetit/commit/d883d64d96ab9bef510745d064a351145b9babechttps://www.kernel.org/pub/linux/utils/util-linux/v2.27/v2.27-ReleaseNotes
2015-11-09
Published