Vulnerabilities > GNU > Patch

DATE CVE VULNERABILITY TITLE RISK
2017-08-25 CVE-2015-1395 Path Traversal vulnerability in multiple products
Directory traversal vulnerability in GNU patch versions which support Git-style patching before 2.7.3 allows remote attackers to write to arbitrary files with the permissions of the target user via a ..
network
low complexity
fedoraproject canonical gnu CWE-22
7.8
2017-08-25 CVE-2014-9637 Resource Management Errors vulnerability in multiple products
GNU patch 2.7.2 and earlier allows remote attackers to cause a denial of service (memory consumption and segmentation fault) via a crafted diff file.
7.1
2015-01-21 CVE-2015-1196 Link Following vulnerability in multiple products
GNU patch 2.7.1 allows remote attackers to write to arbitrary files via a symlink attack in a patch file.
4.3