CVE-2012-5667

Severity CVSS v4.0:
Pending analysis
Type:
CWE-189 Numeric Errors
Publication date:
03/01/2013
Last modified:
11/04/2025

Description

Multiple integer overflows in GNU Grep before 2.11 might allow context-dependent attackers to execute arbitrary code via vectors involving a long input line that triggers a heap-based buffer overflow.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gnu:grep:*:*:*:*:*:*:*:* 2.10 (including)
cpe:2.3:a:gnu:grep:2.2:*:*:*:*:*:*:*
cpe:2.3:a:gnu:grep:2.3:*:*:*:*:*:*:*
cpe:2.3:a:gnu:grep:2.4:*:*:*:*:*:*:*
cpe:2.3:a:gnu:grep:2.4.1:*:*:*:*:*:*:*
cpe:2.3:a:gnu:grep:2.4.2:*:*:*:*:*:*:*
cpe:2.3:a:gnu:grep:2.5:*:*:*:*:*:*:*
cpe:2.3:a:gnu:grep:2.5.1:*:*:*:*:*:*:*
cpe:2.3:a:gnu:grep:2.5.1:a:*:*:*:*:*:*
cpe:2.3:a:gnu:grep:2.5.3:*:*:*:*:*:*:*
cpe:2.3:a:gnu:grep:2.5.4:*:*:*:*:*:*:*
cpe:2.3:a:gnu:grep:2.6:*:*:*:*:*:*:*
cpe:2.3:a:gnu:grep:2.6.1:*:*:*:*:*:*:*
cpe:2.3:a:gnu:grep:2.6.2:*:*:*:*:*:*:*
cpe:2.3:a:gnu:grep:2.6.3:*:*:*:*:*:*:*