A flaw was found in the GNU coreutils "split" program. A heap overflow with user-controlled data of multiple hundred bytes in length could occur in the linebytessplit() function, potentially leading to an application crash and denial of service.
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "9.4-2ubuntu3", "binary_name": "coreutils" }, { "binary_version": "9.4-2ubuntu3", "binary_name": "coreutils-dbgsym" } ] }