UbuntuUpdates.org

Bugs fixes in "patch"

Origin Bug number Title Date fixed
CVE CVE-2018-1000156 GNU Patch version 2.7.6 contains an input validation vulnerability when processing patch files, specifically the EDITOR_PROGRAM invocation (using ed) 2021-05-03
CVE CVE-2016-10713 An issue was discovered in GNU patch before 2.7.6. Out-of-bounds access within pch_write_line() in pch.c can possibly lead to DoS via a crafted input 2021-05-03
CVE CVE-2018-1000156 GNU Patch version 2.7.6 contains an input validation vulnerability when processing patch files, specifically the EDITOR_PROGRAM invocation (using ed) 2021-05-03
CVE CVE-2016-10713 An issue was discovered in GNU patch before 2.7.6. Out-of-bounds access within pch_write_line() in pch.c can possibly lead to DoS via a crafted input 2021-05-03
CVE CVE-2019-13638 shell command injection 2019-07-24
CVE CVE-2019-13636 In GNU patch through 2.7.6, the following of symlinks is mishandled in certain cases other than input files. This affects inp.c and util.c. 2019-07-24
CVE CVE-2019-13638 shell command injection 2019-07-24
CVE CVE-2019-13636 In GNU patch through 2.7.6, the following of symlinks is mishandled in certain cases other than input files. This affects inp.c and util.c. 2019-07-24
CVE CVE-2019-13638 shell command injection 2019-07-24
CVE CVE-2019-13636 In GNU patch through 2.7.6, the following of symlinks is mishandled in certain cases other than input files. This affects inp.c and util.c. 2019-07-24
CVE CVE-2019-13638 shell command injection 2019-07-24
CVE CVE-2019-13636 In GNU patch through 2.7.6, the following of symlinks is mishandled in certain cases other than input files. This affects inp.c and util.c. 2019-07-24
CVE CVE-2016-10713 An issue was discovered in GNU patch before 2.7.6. Out-of-bounds access within pch_write_line() in pch.c can possibly lead to DoS via a crafted input 2018-04-10
CVE CVE-2016-10713 An issue was discovered in GNU patch before 2.7.6. Out-of-bounds access within pch_write_line() in pch.c can possibly lead to DoS via a crafted input 2018-04-10
CVE CVE-2016-10713 An issue was discovered in GNU patch before 2.7.6. Out-of-bounds access within pch_write_line() in pch.c can possibly lead to DoS via a crafted input 2018-04-10
CVE CVE-2016-10713 An issue was discovered in GNU patch before 2.7.6. Out-of-bounds access within pch_write_line() in pch.c can possibly lead to DoS via a crafted input 2018-04-10
CVE CVE-2014-9637 With a specific file, patch goes to infinite loop and eats all CPU time 2015-06-23
CVE CVE-2010-4651 Directory traversal vulnerability in util.c in GNU patch 2.6.1 and earlier allows user-assisted remote attackers to create or overwrite arbitrary fil 2015-06-23
CVE CVE-2014-9637 With a specific file, patch goes to infinite loop and eats all CPU time 2015-06-23
CVE CVE-2010-4651 Directory traversal vulnerability in util.c in GNU patch 2.6.1 and earlier allows user-assisted remote attackers to create or overwrite arbitrary fil 2015-06-23



About   -   Send Feedback to @ubuntu_updates