Search: "gnu"

1221 CVEs found

CVE-2025-32988
6.5 MEDIUM

A flaw was found in GnuTLS. A double-free vulnerability exists in GnuTLS due to incorrect ownership handling in the export logic of Subject Alternative Name (SAN) entries containing an otherName. If t...

Published: 2025-07-10
Products: 7
Vendors:
redhat gnu
CVE-2025-32989
5.3 MEDIUM

A heap-buffer-overread vulnerability was found in GnuTLS in how it handles the Certificate Transparency (CT) Signed Certificate Timestamp (SCT) extension during X.509 certificate parsing. This flaw al...

Published: 2025-07-10
Products: 7
Vendors:
redhat gnu
CVE-2025-32990
6.5 MEDIUM

A heap-buffer-overflow (off-by-one) flaw was found in the GnuTLS software in the template parsing logic within the certtool utility. When it reads certain settings from a template file, it allows an a...

Published: 2025-07-10
Products: 7
Vendors:
redhat gnu
CVE-2025-6395
6.5 MEDIUM

A NULL pointer dereference flaw was found in the GnuTLS software in _gnutls_figure_common_ciphersuite().

Published: 2025-07-10
Products: 0
CVE-2025-45582
4.1 MEDIUM

GNU Tar through 1.35 allows file overwrite via directory traversal in crafted TAR archives, with a certain two-step process. First, the victim must extract an archive that contains a ../ symlink to a ...

Published: 2025-07-11
Products: 1
Vendors:
gnu
CVE-2025-7545
5.3 MEDIUM

A vulnerability classified as problematic was found in GNU Binutils 2.45. Affected by this vulnerability is the function copy_section of the file binutils/objcopy.c. The manipulation leads to heap-bas...

Published: 2025-07-13
Products: 1
Vendors:
gnu
CVE-2025-7546
5.3 MEDIUM

A vulnerability, which was classified as problematic, has been found in GNU Binutils 2.45. Affected by this issue is the function bfd_elf_set_group_contents of the file bfd/elf.c. The manipulation lea...

Published: 2025-07-13
Products: 1
Vendors:
gnu

A vulnerability, which was classified as problematic, has been found in Gnuboard g6 up to 6.0.10. This issue affects some unknown processing of the file /bbs/scrap_popin_update/qa/ of the component Po...

Published: 2025-07-18
Products: 1
Vendors:
sir

The regcomp function in the GNU C library version from 2.4 to 2.41 is subject to a double free if some previous allocation fails. It can be accomplished either by a malloc failure or by using an int...

Published: 2025-07-23
Products: 0
CVE-2025-38407
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: riscv: cpu_ops_sbi: Use static array for boot_data Since commit 6b9f29b81b15 ("riscv: Enable pcpu page first chunk allocator"), if...

Published: 2025-07-25
Products: 6
Vendors:
linux

A vulnerability has been found in GNU Binutils 2.44 and classified as problematic. This vulnerability affects the function bfd_elf_get_str_section of the file bfd/elf.c of the component BFD Library. T...

Published: 2025-07-27
Products: 1
Vendors:
gnu

A vulnerability was found in GNU Binutils 2.44 and classified as problematic. This issue affects the function process_debug_info of the file binutils/dwarf.c of the component DWARF Section Handler. Th...

Published: 2025-07-27
Products: 1
Vendors:
gnu

A vulnerability classified as problematic was found in GNU cflow up to 1.8. Affected by this vulnerability is the function yylex of the file c.c of the component Lexer. The manipulation leads to null ...

Published: 2025-08-08
Products: 0
CVE-2025-8736
5.3 MEDIUM

A vulnerability, which was classified as critical, has been found in GNU cflow up to 1.8. Affected by this issue is the function yylex of the file c.c of the component Lexer. The manipulation leads to...

Published: 2025-08-08
Products: 0

A vulnerability, which was classified as problematic, was found in GNU libopts up to 27.6. Affected is the function __strstr_sse2. The manipulation leads to memory corruption. Local access is required...

Published: 2025-08-09
Products: 1
Vendors:
gnu
CVE-2025-59378
5.7 MEDIUM

In guix-daemon in GNU Guix before 1618ca7, a content-addressed-mirrors file can be written to create a setuid program that allows a regular user to gain the privileges of the build user that runs it (...

Published: 2025-09-15
Products: 0

A vulnerability was detected in GNU Binutils 2.45. This issue affects the function dump_dwarf_section of the file binutils/objdump.c. Performing manipulation results in out-of-bounds read. The attack ...

Published: 2025-09-27
Products: 1
Vendors:
gnu
CVE-2025-11082
5.3 MEDIUM

A flaw has been found in GNU Binutils 2.45. Impacted is the function _bfd_elf_parse_eh_frame of the file bfd/elf-eh-frame.c of the component Linker. Executing manipulation can lead to heap-based buffe...

Published: 2025-09-27
Products: 1
Vendors:
gnu
CVE-2025-11083
5.3 MEDIUM

A vulnerability has been found in GNU Binutils 2.45. The affected element is the function elf_swap_shdr in the library bfd/elfcode.h of the component Linker. The manipulation leads to heap-based buffe...

Published: 2025-09-27
Products: 1
Vendors:
gnu
CVE-2025-39903
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: of_numa: fix uninitialized memory nodes causing kernel panic When there are memory-only nodes (nodes without CPUs), these nodes ar...

Published: 2025-10-01
Products: 6
Vendors:
linux