The SUSE coreutils-i18n.patch for GNU coreutils allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a long string to the join command, when using the -i switch, which triggers a stack-based buffer overflow in the alloca function.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2013-11-23T18:00:00

Updated: 2024-08-06T14:18:09.644Z

Reserved: 2012-12-06T00:00:00

Link: CVE-2013-0223

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2013-11-23T18:55:04.187

Modified: 2024-11-21T01:47:06.020

Link: CVE-2013-0223

cve-icon Redhat

Severity : Low

Publid Date: 2013-01-15T00:00:00Z

Links: CVE-2013-0223 - Bugzilla