CVE Vulnerabilities

CVE-2012-5667

Published: Jan 03, 2013 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.4 MEDIUM
AV:L/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
4.4 LOW
AV:L/AC:M/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

Multiple integer overflows in GNU Grep before 2.11 might allow context-dependent attackers to execute arbitrary code via vectors involving a long input line that triggers a heap-based buffer overflow.

Affected Software

NameVendorStart VersionEnd Version
GrepGnu*2.10 (including)
GrepGnu2.2 (including)2.2 (including)
GrepGnu2.3 (including)2.3 (including)
GrepGnu2.4 (including)2.4 (including)
GrepGnu2.4.1 (including)2.4.1 (including)
GrepGnu2.4.2 (including)2.4.2 (including)
GrepGnu2.5 (including)2.5 (including)
GrepGnu2.5.1 (including)2.5.1 (including)
GrepGnu2.5.1-a (including)2.5.1-a (including)
GrepGnu2.5.3 (including)2.5.3 (including)
GrepGnu2.5.4 (including)2.5.4 (including)
GrepGnu2.6 (including)2.6 (including)
GrepGnu2.6.1 (including)2.6.1 (including)
GrepGnu2.6.2 (including)2.6.2 (including)
GrepGnu2.6.3 (including)2.6.3 (including)
GrepGnu2.7 (including)2.7 (including)
GrepGnu2.8 (including)2.8 (including)
GrepGnu2.9 (including)2.9 (including)
Red Hat Enterprise Linux 6RedHatgrep-0:2.20-3.el6*
GrepUbuntuhardy*
GrepUbuntulucid*
GrepUbuntuoneiric*
GrepUbuntuprecise*
GrepUbuntuprecise/esm*
GrepUbuntuupstream*

References