Vulnerability Details CVE-2013-0221
The SUSE coreutils-i18n.patch for GNU coreutils allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a long string to the sort command, when using the (1) -d or (2) -M switch, which triggers a stack-based buffer overflow in the alloca function.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.076
EPSS Ranking 91.4%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2013-0221
-
cpe:2.3:o:opensuse:opensuse:12.1
-
cpe:2.3:o:opensuse:opensuse:12.2
-
cpe:2.3:o:redhat:enterprise_linux:6.0