Vulnerabilities > GNU > Pspp > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-02-27 CVE-2019-9211 Reachable Assertion vulnerability in multiple products
There is a reachable assertion abort in the function write_long_string_missing_values() in data/sys-file-writer.c in libdata.a in GNU PSPP 1.2.0 that will lead to denial of service.
network
low complexity
gnu fedoraproject suse CWE-617
6.5
2018-12-19 CVE-2018-20230 Out-of-bounds Write vulnerability in GNU Pspp 1.2.0
An issue was discovered in PSPP 1.2.0.
network
gnu CWE-787
6.8
2017-08-18 CVE-2017-12961 Improper Input Validation vulnerability in GNU Pspp 0.11.0
There is an assertion abort in the function parse_attributes() in data/sys-file-reader.c of the libpspp library in GNU PSPP before 1.0.1 that will lead to remote denial of service.
network
low complexity
gnu CWE-20
5.0
2017-08-18 CVE-2017-12960 Reachable Assertion vulnerability in GNU Pspp 0.11.0
There is a reachable assertion abort in the function dict_rename_var() in data/dictionary.c of the libpspp library in GNU PSPP before 1.0.1 that will lead to remote denial of service.
network
low complexity
gnu CWE-617
5.0
2017-08-18 CVE-2017-12959 Reachable Assertion vulnerability in GNU Pspp 0.11.0
There is a reachable assertion abort in the function dict_add_mrset() in data/dictionary.c of the libpspp library in GNU PSPP before 1.0.1 that will lead to a remote denial of service attack.
network
low complexity
gnu CWE-617
5.0
2017-08-18 CVE-2017-12958 Out-of-bounds Read vulnerability in GNU Pspp 0.11.0
There is an illegal address access in the function output_hex() in data/data-out.c of the libpspp library in GNU PSPP before 1.0.1 that will lead to remote denial of service.
network
low complexity
gnu CWE-125
5.0
2017-07-02 CVE-2017-10792 NULL Pointer Dereference vulnerability in GNU Pspp 0.10.5Pre2
There is a NULL Pointer Dereference in the function ll_insert() of the libpspp library in GNU PSPP before 0.11.0.
network
gnu CWE-476
4.3
2017-07-02 CVE-2017-10791 Integer Overflow or Wraparound vulnerability in GNU Pspp 0.10.5Pre2
There is an Integer overflow in the hash_int function of the libpspp library in GNU PSPP before 0.11.0.
network
gnu CWE-190
4.3