Vulnerability index

Browse CVEs

23 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Coreutils MEDIUM 5.5
CVE-2026-35380

A logic error in the cut utility of uutils coreutils causes the program to incorrectly interpret the literal two-byte string '' (two single quotes) a…

Fix: 0.8.0+
Fix from $1,600 2026-04-22
Coreutils MEDIUM 6.3
CVE-2026-35374

A Time-of-Check to Time-of-Use (TOCTOU) vulnerability exists in the split utility of uutils coreutils. The program attempts to prevent data loss by c…

Patch available
Fix from $1,600 2026-04-22
Coreutils MEDIUM 5.8
CVE-2026-35376

A Time-of-Check to Time-of-Use (TOCTOU) vulnerability exists in the chcon utility of uutils coreutils during recursive operations. The implementation…

Fix: 0.8.0+
Fix from $1,600 2026-04-22
Coreutils MEDIUM 5.5
CVE-2026-35373

A logic error in the ln utility of uutils coreutils causes the program to reject source paths containing non-UTF-8 filename bytes when using target-d…

Patch available
Fix from $1,600 2026-04-22
Coreutils MEDIUM 5.0
CVE-2026-35372

A logic error in the ln utility of uutils coreutils allows the utility to dereference a symbolic link target even when the --no-dereference (or -n) f…

Fix: 0.8.0+
Fix from $1,600 2026-04-22
Coreutils HIGH 7.8
CVE-2026-35368

A vulnerability exists in the chroot utility of uutils coreutils when using the --userspec option. The utility resolves the user specification via ge…

No fix yet
Fix from $1,950 2026-04-22
Coreutils MEDIUM 5.5
CVE-2026-35369

An argument parsing error in the kill utility of uutils coreutils incorrectly interprets kill -1 as a request to send the default signal (SIGTERM) to…

Fix: 0.6.0+
Fix from $1,600 2026-04-22
Coreutils MEDIUM 6.6
CVE-2026-35365

The mv utility in uutils coreutils improperly handles directory trees containing symbolic links during moves across filesystem boundaries. Instead of…

Fix: 0.7.0+
Fix from $1,600 2026-04-22
Coreutils MEDIUM 6.3
CVE-2026-35364

A Time-of-Check to Time-of-Use (TOCTOU) race condition exists in the mv utility of uutils coreutils during cross-device operations. The utility remov…

No fix yet
Fix from $1,600 2026-04-22
Coreutils MEDIUM 5.6
CVE-2026-35363

A vulnerability in the rm utility of uutils coreutils allows the bypass of safeguard mechanisms intended to protect the current directory. While the …

No fix yet
Fix from $1,600 2026-04-22
Coreutils MEDIUM 6.3
CVE-2026-35356

A Time-of-Check to Time-of-Use (TOCTOU) vulnerability exists in the install utility of uutils coreutils when using the -D flag. The command creates p…

Fix: 0.7.0+
Fix from $1,600 2026-04-22
Coreutils MEDIUM 6.3
CVE-2026-35360

The touch utility in uutils coreutils is vulnerable to a Time-of-Check to Time-of-Use (TOCTOU) race condition during file creation. When the utility …

No fix yet
Fix from $1,600 2026-04-22
Coreutils MEDIUM 5.5
CVE-2026-35358

The cp utility in uutils coreutils, when performing recursive copies (-R), incorrectly treats character and block device nodes as stream sources rath…

Fix: 0.7.0+
Fix from $1,600 2026-04-22
Coreutils HIGH 7.7
CVE-2026-35349

A vulnerability in the rm utility of uutils coreutils allows a bypass of the --preserve-root protection. The implementation uses a path-string check …

Fix: 0.7.0+
Fix from $1,950 2026-04-22
Coreutils HIGH 7.0
CVE-2026-35352

A Time-of-Check to Time-of-Use (TOCTOU) race condition exists in the mkfifo utility of uutils coreutils. The utility creates a FIFO and then performs…

No fix yet
Fix from $1,950 2026-04-22
Coreutils MEDIUM 6.6
CVE-2026-35350

The cp utility in uutils coreutils fails to properly handle setuid and setgid bits when ownership preservation fails. When copying with the -p (prese…

No fix yet
Fix from $1,600 2026-04-22
Coreutils MEDIUM 6.3
CVE-2026-35355

The install utility in uutils coreutils is vulnerable to a Time-of-Check to Time-of-Use (TOCTOU) race condition during file installation. The impleme…

Fix: 0.6.0+
Fix from $1,600 2026-04-22
Coreutils MEDIUM 5.5
CVE-2026-35348

The sort utility in uutils coreutils is vulnerable to a process panic when using the --files0-from option with inputs containing non-UTF-8 filenames.…

No fix yet
Fix from $1,600 2026-04-22
Coreutils HIGH 7.1
CVE-2026-35341

A vulnerability in uutils coreutils mkfifo allows for the unauthorized modification of permissions on existing files. When mkfifo fails to create a F…

No fix yet
Fix from $1,950 2026-04-22
Coreutils MEDIUM 5.3
CVE-2026-35345

A vulnerability in the tail utility of uutils coreutils allows for the exfiltration of sensitive file contents when using the --follow=name option. U…

No fix yet
Fix from $1,600 2026-04-22
Coreutils HIGH 7.3
CVE-2026-35338

A vulnerability in the chmod utility of uutils coreutils allows users to bypass the --preserve-root safety mechanism. The implementation only validat…

Fix: 0.6.0+
Fix from $1,950 2026-04-22
Coreutils MEDIUM 5.5
CVE-2026-35339

The recursive mode (-R) of the chmod utility in uutils coreutils incorrectly handles exit codes when processing multiple files. The final return valu…

Fix: 0.6.0+
Fix from $1,600 2026-04-22
Coreutils MEDIUM 5.5
CVE-2026-35340

A flaw in the ChownExecutor used by uutils coreutils chown and chgrp causes the utilities to return an incorrect exit code during recursive operation…

Fix: 0.6.0+
Fix from $1,600 2026-04-22