CVE-2019-6456

Severity
6.5MEDIUM
EPSS
0.2%
top 60.69%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 16
Latest updateDec 4

Description

An issue was discovered in GNU Recutils 1.8. There is a NULL pointer dereference in the function rec_fex_size() in the file rec-fex.c of librec.a.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

Affected Packages1 packages

โ–ถNVDgnu/recutils1.8

๐Ÿ”ดVulnerability Details

4
OSV
recutils vulnerabilitiesโ†—2024-12-04
โ–ถ
GHSA
GHSA-mx2f-h83q-m8g6: An issue was discovered in GNU Recutils 1โ†—2022-05-14
โ–ถ
OSV
CVE-2019-6456: An issue was discovered in GNU Recutils 1โ†—2019-01-16
โ–ถ
CVEList
CVE-2019-6456: An issue was discovered in GNU Recutils 1โ†—2019-01-16
โ–ถ

๐Ÿ“‹Vendor Advisories

3
Ubuntu
recutils vulnerabilitiesโ†—2024-12-04
โ–ถ
Chrome
Stable Channel Update for Desktop: CVE-2020-6430โ†—2020-04-07
โ–ถ
Debian
CVE-2019-6456: recutils - An issue was discovered in GNU Recutils 1.8. There is a NULL pointer dereference...โ†—2019
โ–ถ

๐Ÿ’ฌCommunity

2
Bugzilla
CVE-2019-6455 CVE-2019-6456 CVE-2019-6457 CVE-2019-6458 CVE-2019-6459 CVE-2019-6460 recutils: Multiple security issues [fedora-all]โ†—2019-01-31
โ–ถ
Bugzilla
CVE-2019-6455 CVE-2019-6456 CVE-2019-6457 CVE-2019-6458 CVE-2019-6459 CVE-2019-6460 recutils: Multiple security issuesโ†—2019-01-31
โ–ถ
CVE-2019-6456 (MEDIUM CVSS 6.5) | An issue was discovered in GNU Recu | cvebase.io