CVE-2025-5278
ADVISORY - nistSummary
A flaw was found in GNU Coreutils. The sort utility's begfield() function is vulnerable to a heap buffer under-read. The program may access memory outside the allocated buffer if a user runs a crafted command using the traditional key format. A malicious input could lead to a crash or leak sensitive data.
EPSS Score: 0.00015 (0.020)
Common Weakness Enumeration (CWE)
ADVISORY - nist
Stack-based Buffer Overflow
ADVISORY - redhat
Stack-based Buffer Overflow
NIST
CREATED
UPDATED
ADVISORY IDCVE-2025-5278
EXPLOITABILITY SCORE
1.8
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)
CVSS SCORE
4.4mediumDebian
CREATED
UPDATED
ADVISORY IDCVE-2025-5278
EXPLOITABILITY SCORE
-
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)-
CVSS SCORE
N/AlowUbuntu
CREATED
UPDATED
ADVISORY IDCVE-2025-5278
EXPLOITABILITY SCORE
-
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)-
CVSS SCORE
N/AlowRed Hat
CREATED
UPDATED
ADVISORY IDCVE-2025-5278
EXPLOITABILITY SCORE
1.8
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)
CVSS SCORE
4.4mediumPhoton
CREATED
UPDATED
ADVISORY ID
CVE-2025-5278
EXPLOITABILITY SCORE
-
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)-