CVE-2014-9471

Source
https://cve.org/CVERecord?id=CVE-2014-9471
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2014-9471.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2014-9471
Downstream
Related
Published
2015-01-16T16:59:08Z
Modified
2026-04-16T06:16:53.224269889Z
Summary
[none]
Details

The parse_datetime function in GNU coreutils allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted date string, as demonstrated by the "--date=TZ="123"345" @1" string to the touch or date command.

References

Affected packages