Known vulnerabilities in cpio
Vendor:
GNU
Software:
cpio
Software CPE:
cpe:2.3:a:gnu:cpio:*:*:*:*:*:*:*:*
Website:
https://www.gnu.org/
Total vulnerabilities:
6
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU85896 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2023-7207 |
CWE-22 | High | 2.14 | 30.01.2024 |
SB2024013015 SB2024013019 SB2024013020 and 12 more |
||
| #VU55853 - Integer overflow CVE-2021-38185 |
CWE-190 | High | 2.14 | 16.08.2021 |
SB2021081602 SB2021090901 SB2022051160 and 21 more |
||
| #VU22598 - Improper input validation CVE-2019-14866 |
CWE-20 | Low | - | 07.11.2019 |
SB2019110723 SB2019110724 SB2019110742 and 15 more |
||
| #VU33162 - Memory corruption CVE-2016-2037 |
CWE-119 | Medium | - | 22.02.2016 |
SB2016022205 SB2018122037 SB2020120413 and 1 more |
||
| #VU33721 - Improper input validation CVE-2015-1197 |
CWE-20 | Low | - | 19.02.2015 |
SB2015021904 SB2015121002 SB2015021503 and 6 more |
||
| #VU33283 - Heap-based Buffer Overflow CVE-2014-9112 |
CWE-122 | Medium | - | 02.12.2014 |
SB2014120201 SB2015021503 SB2014120210 |