CVE-2017-5357

Severity CVSS v4.0:
Pending analysis
Type:
CWE-416 Use After Free
Publication date:
17/02/2017
Last modified:
20/04/2025

Description

regex.c in GNU ed before 1.14.1 allows attackers to cause a denial of service (crash) via a malformed command, which triggers an invalid free.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:fedoraproject:fedora:25:*:*:*:*:*:*:*
cpe:2.3:a:gnu:ed:*:*:*:*:*:*:*:* 1.14 (including)