REDHAT-BUG-1545053: Double Free
Published Feb 14, 2018
·Updated
GNU patch through version 2.7.6 is vulnerable to a double freeing of memory when supplied a crafted patch file leading to a crash.
Upstream Issue:
https://savannah.gnu.org/bugs/index.php?53133
Affected Software
1 affected component
GNU patch<=2.7.6
Event History
Feb 14, 2018
Data Sourced
via Red Hat·07:19 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-1545053?
REDHAT-BUG-1545053 is categorized as a potentially high-severity vulnerability due to the risk of crashing the application.
2
How do I fix REDHAT-BUG-1545053?
To fix REDHAT-BUG-1545053, upgrade GNU patch to version 2.7.7 or later.
3
What versions of GNU patch are affected by REDHAT-BUG-1545053?
GNU patch versions up to and including 2.7.6 are affected by REDHAT-BUG-1545053.
4
What type of vulnerability is REDHAT-BUG-1545053?
REDHAT-BUG-1545053 is a memory management vulnerability that involves double freeing memory.
5
What could happen if REDHAT-BUG-1545053 is exploited?
Exploitation of REDHAT-BUG-1545053 could lead to a crash of the GNU patch application.