Back to Database
Status published
Low
CVE-2015-5218
Buffer overflow in text-utils/colcrt.c in colcrt in util-linux before 2.27...
Vulnerability Description
Buffer overflow in text-utils/colcrt.c in colcrt in util-linux before 2.27 allows local users to cause a denial of service (crash) via a crafted file, related to the page global variable.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2015-5218
Credits & Attribution
No credits recorded in the NVD database.
References
- http://lists.opensuse.org/opensuse-updates/2015-11/msg00035.html
- http://www.spinics.net/lists/util-linux-ng/msg11873.html
- https://github.com/kerolasa/lelux-utiliteetit/commit/70e3fcf293c1827a2655a86584ab13075124a8a8
- https://bugzilla.redhat.com/show_bug.cgi?id=1259322
- https://github.com/kerolasa/lelux-utiliteetit/commit/d883d64d96ab9bef510745d064a351145b9babec
- https://www.kernel.org/pub/linux/utils/util-linux/v2.27/v2.27-ReleaseNotes
More from kernel
View All →CVE-2021-37600
An integer overflow in util-linux through 2.37.1 can potentially cause...
Medium
5.5
CVE-2020-21583
An issue was discovered in hwclock.13-v2.27 allows attackers to gain...
Medium
6.7
CVE-2018-7738
In util-linux before 2.32-rc1, bash-completion/umount allows local users to gain...
High
7.8
CVE-2018-1118
Linux kernel vhost since version 4.8 does not properly initialize...
Low
2.3
CVE-2018-1108
kernel drivers before version 4.17-rc1 are vulnerable to a weakness...
Medium
5.9
Affected Vendor
kernel
View all reports →Affected Software
util-linux, opensuse, leap
Vulnerable Versions:
0, 13.1, 13.2, 42.1
Timeline
Official Publish:
November 9th, 2015
Last Modified:
August 6th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.