A flaw was found in GNU Coreutils. The sort utility's begfield() function is vulnerable to a heap buffer under-read. The program may access memory outside the allocated buffer if a user runs a crafted command using the traditional key format. A malicious input could lead to a crash or leak sensitive data.
References
Configurations
No configuration.
History
29 May 2025, 18:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
29 May 2025, 16:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
29 May 2025, 13:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
28 May 2025, 15:01
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
28 May 2025, 01:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
27 May 2025, 21:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-05-27 21:15
Updated : 2025-10-22 20:15
NVD link : CVE-2025-5278
Mitre link : CVE-2025-5278
CVE.ORG link : CVE-2025-5278
JSON object : View
Products Affected
No product.
CWE
CWE-121
Stack-based Buffer Overflow
