ZeroHour

CVE-2019-13636

CVSS 3.0
5.9 medium
EPSS
4%p90
Published
()
Modified
Description

In GNU patch through 2.7.6, the following of symlinks is mishandled in certain cases other than input files. This affects inp.c and util.c.

Vendors
gnu
Products
patch
Weakness
CWE-59
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.