CVE-2025-5278
ADVISORY - nistSummary
A flaw was found in GNU Coreutils. The sort utility's begfield() function is vulnerable to a heap buffer under-read. The program may access memory outside the allocated buffer if a user runs a crafted command using the traditional key format. A malicious input could lead to a crash or leak sensitive data.
EPSS Score: 0.00015 (0.020)
Common Weakness Enumeration (CWE)
ADVISORY - nist
Stack-based Buffer Overflow
ADVISORY - redhat
Stack-based Buffer Overflow
Sign in to Docker Scout
See which of your images are affected by this CVE and how to fix them by signing into Docker Scout.
Sign in