gnu records
1,208 published records for vendor gnu.
Researcher profile
- Entered KEV
- 5 · 0.4%
- Weaponized
- 12 · 1%
- Pre-auth RCE
- 104
- With a fix record
- 81.4%
- Median publish → KEV
- 2683 days
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer153
- CWE-787 Out-of-bounds Write98
- CWE-125 Out-of-bounds Read93
- CWE-476 NULL Pointer Dereference77
- CWE-190 Integer Overflow or Wraparound46
- CWE-20 Improper Input Validation38
The weakness classes this vendor ships most often: where to look.
CWEAll records
1,208 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
99Now | CVE-2014-6271Weaponized | GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attacgnu · bash · CWE-78 | Critical9.8 | KEV | 100.0% | Sep 24, 2014 |
99Now | CVE-2014-7169Weaponized | GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definitions in the values of environment variablgnu · bash · CWE-78 | Critical9.8 | KEV | 99.9% | Sep 24, 2014 |
99Now | CVE-2026-24061Weaponized | telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment variable.gnu · inetutils · CWE-88 | Critical9.8 | KEV | 99.0% | Jan 21, 2026 |
95Now | CVE-2014-6278Weaponized | GNU Bash through 4.3 bash43-026 does not properly parse function definitions in the values of environment variables, which allows remote attgnu · bash · CWE-78 | High8.8 | KEV | 99.6% | Sep 30, 2014 |
85Now | CVE-2023-4911Weaponized | Glibc: buffer overflow in ld.so leading to privilege escalationgnu · glibc · CWE-122 | High7.8 | KEV | 81.4% | Oct 3, 2023 |
68This week | CVE-2011-4862Weaponized | Buffer overflow in libtelnet/encrypt.c in telnetd in FreeBSD 7.3 through 9.0, MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.2 and mit · krb5-appl · CWE-120 | Critical10.0 | — | 95.0% | Dec 24, 2011 |
68This week | CVE-2015-0235Weaponized | Heap-based buffer overflow in the __nss_hostname_digits_dots function in glibc 2.2, and other 2.x versions before 2.18, allows context-depengnu · glibc · CWE-787 | Critical10.0 | — | 94.6% | Jan 28, 2015 |
65This week | CVE-2009-3555Proof of concept | The TLS protocol, and the SSL protocol 3.0 and possibly earlier, as used in Microsoft Internet Information Services (IIS) 7.0, mod_ssl in thapache · http server · CWE-295 | Critical9.8 | — | 87.3% | Nov 9, 2009 |
61This week | CVE-2014-7186Proof of concept | The redirection implementation in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of service (out-of-bognu · bash · CWE-119 | Critical10.0 | — | 69.8% | Sep 28, 2014 |
61This week | CVE-2014-6277Proof of concept | GNU Bash through 4.3 bash43-026 does not properly parse function definitions in the values of environment variables, which allows remote attgnu · bash · CWE-78 | Critical10.0 | — | 69.8% | Sep 27, 2014 |
59Plan | CVE-2015-7547Proof of concept | Multiple stack-based buffer overflows in the (1) send_dg and (2) send_vc functions in the libresolv library in the GNU C Library (aka glibc gnu · glibc · CWE-119 | High8.1 | — | 91.0% | Feb 18, 2016 |
59Plan | CVE-2017-13089Proof of concept | GNU Wget: stack overflow in HTTP protocol handlinggnu · wget · CWE-121 | High8.8 | — | 79.9% | Oct 27, 2017 |
59Plan | CVE-2014-7187Proof of concept | Off-by-one error in the read_token_word function in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of gnu · bash · CWE-119 | Critical10.0 | — | 64.6% | Sep 28, 2014 |
55Plan | CVE-2024-2961Weaponized | The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when convertignu · glibc · CWE-787 | High7.3 | — | 88.3% | Apr 17, 2024 |
49Plan | CVE-1999-0016Proof of concept | Land IP denial of service.cisco · ios | Medium5.0 | — | 95.7% | Dec 1, 1997 |
49Plan | CVE-2016-4971Proof of concept | GNU wget before 1.18 allows remote servers to write to arbitrary files by redirecting a request from HTTP to a crafted FTP resource.gnu · wget | High8.8 | — | 46.1% | Jun 30, 2016 |
49Plan | CVE-2014-4877Weaponized | Absolute path traversal vulnerability in GNU Wget before 1.16, when recursion is enabled, allows remote FTP servers to write to arbitrary fignu · wget · CWE-22 | Critical9.3 | — | 39.9% | Oct 29, 2014 |
49Plan | CVE-2017-5334No exploit | Double free vulnerability in the gnutls_x509_ext_import_proxy function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote attackergnu · gnutls · CWE-415 | Critical9.8 | — | 32.8% | Mar 24, 2017 |
48Plan | CVE-2019-3829No exploit | A vulnerability was found in gnutls versions from 3.5.8 before 3.6.7.gnu · gnutls · CWE-416 | High7.5 | — | 59.0% | Mar 27, 2019 |
46Plan | CVE-2017-13090No exploit | GNU Wget: heap overflow in HTTP protocol handlinggnu · wget · CWE-122 | High8.8 | — | 36.6% | Oct 27, 2017 |
46Plan | CVE-2004-1701Proof of concept | Heap-based buffer overflow in the AuthenticationDialogue function in cfservd for Cfengine 2.0.0 to 2.1.7p1 allows remote attackers to executgnu · cfengine | Critical10.0 | — | 19.5% | Aug 9, 2004 |
45Plan | CVE-2004-1170Proof of concept | a2ps 4.13 allows remote attackers to execute arbitrary commands via shell metacharacters in the filename.gnu · a2ps | Critical10.0 | — | 16.0% | Jan 10, 2005 |
45Plan | CVE-2004-0354Proof of concept | Multiple format string vulnerabilities in GNU Anubis 3.6.0 through 3.6.2, 3.9.92 and 3.9.93 allow remote attackers to execute arbitrary codegnu · anubis | Critical10.0 | — | 15.6% | Nov 23, 2004 |
44Plan | CVE-2008-1948No exploit | The _gnutls_server_name_recv_params function in lib/ext_server_name.c in libgnutls in gnutls-serv in GnuTLS before 2.2.4 does not properly cgnu · gnutls · CWE-189 | Critical10.0 | — | 12.0% | May 21, 2008 |
42Plan | CVE-2021-26937No exploit | encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or gnu · screen · CWE-88 | Critical9.8 | — | 9.1% | Feb 9, 2021 |
- CVE-2014-627199Now
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attac
CriticalCVSS 9.8KEVWeaponizedEPSS 100%gnu · bashSep 24, 2014
- CVE-2014-716999Now
GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definitions in the values of environment variabl
CriticalCVSS 9.8KEVWeaponizedEPSS 100%gnu · bashSep 24, 2014
- CVE-2026-2406199Now
telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment variable.
CriticalCVSS 9.8KEVWeaponizedEPSS 99%gnu · inetutilsJan 21, 2026
- CVE-2014-627895Now
GNU Bash through 4.3 bash43-026 does not properly parse function definitions in the values of environment variables, which allows remote att
HighCVSS 8.8KEVWeaponizedEPSS 100%gnu · bashSep 30, 2014
- CVE-2023-491185Now
Glibc: buffer overflow in ld.so leading to privilege escalation
HighCVSS 7.8KEVWeaponizedEPSS 81%gnu · glibcOct 3, 2023
- CVE-2011-486268This week
Buffer overflow in libtelnet/encrypt.c in telnetd in FreeBSD 7.3 through 9.0, MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.2 and
CriticalCVSS 10.0WeaponizedEPSS 95%mit · krb5-applDec 24, 2011
- CVE-2015-023568This week
Heap-based buffer overflow in the __nss_hostname_digits_dots function in glibc 2.2, and other 2.x versions before 2.18, allows context-depen
CriticalCVSS 10.0WeaponizedEPSS 95%gnu · glibcJan 28, 2015
- CVE-2009-355565This week
The TLS protocol, and the SSL protocol 3.0 and possibly earlier, as used in Microsoft Internet Information Services (IIS) 7.0, mod_ssl in th
CriticalCVSS 9.8Proof of conceptEPSS 87%apache · http serverNov 9, 2009
- CVE-2014-718661This week
The redirection implementation in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of service (out-of-bo
CriticalCVSS 10.0Proof of conceptEPSS 70%gnu · bashSep 28, 2014
- CVE-2014-627761This week
GNU Bash through 4.3 bash43-026 does not properly parse function definitions in the values of environment variables, which allows remote att
CriticalCVSS 10.0Proof of conceptEPSS 70%gnu · bashSep 27, 2014
- CVE-2015-754759Plan
Multiple stack-based buffer overflows in the (1) send_dg and (2) send_vc functions in the libresolv library in the GNU C Library (aka glibc
HighCVSS 8.1Proof of conceptEPSS 91%gnu · glibcFeb 18, 2016
- CVE-2017-1308959Plan
GNU Wget: stack overflow in HTTP protocol handling
HighCVSS 8.8Proof of conceptEPSS 80%gnu · wgetOct 27, 2017
- CVE-2014-718759Plan
Off-by-one error in the read_token_word function in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of
CriticalCVSS 10.0Proof of conceptEPSS 65%gnu · bashSep 28, 2014
- CVE-2024-296155Plan
The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converti
HighCVSS 7.3WeaponizedEPSS 88%gnu · glibcApr 17, 2024
- CVE-1999-001649Plan
Land IP denial of service.
MediumCVSS 5.0Proof of conceptEPSS 96%cisco · iosDec 1, 1997
- CVE-2016-497149Plan
GNU wget before 1.18 allows remote servers to write to arbitrary files by redirecting a request from HTTP to a crafted FTP resource.
HighCVSS 8.8Proof of conceptEPSS 46%gnu · wgetJun 30, 2016
- CVE-2014-487749Plan
Absolute path traversal vulnerability in GNU Wget before 1.16, when recursion is enabled, allows remote FTP servers to write to arbitrary fi
CriticalCVSS 9.3WeaponizedEPSS 40%gnu · wgetOct 29, 2014
- CVE-2017-533449Plan
Double free vulnerability in the gnutls_x509_ext_import_proxy function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote attacker
CriticalCVSS 9.8No exploitEPSS 33%gnu · gnutlsMar 24, 2017
- CVE-2019-382948Plan
A vulnerability was found in gnutls versions from 3.5.8 before 3.6.7.
HighCVSS 7.5No exploitEPSS 59%gnu · gnutlsMar 27, 2019
- CVE-2017-1309046Plan
GNU Wget: heap overflow in HTTP protocol handling
HighCVSS 8.8No exploitEPSS 37%gnu · wgetOct 27, 2017
- CVE-2004-170146Plan
Heap-based buffer overflow in the AuthenticationDialogue function in cfservd for Cfengine 2.0.0 to 2.1.7p1 allows remote attackers to execut
CriticalCVSS 10.0Proof of conceptEPSS 20%gnu · cfengineAug 9, 2004
- CVE-2004-117045Plan
a2ps 4.13 allows remote attackers to execute arbitrary commands via shell metacharacters in the filename.
CriticalCVSS 10.0Proof of conceptEPSS 16%gnu · a2psJan 10, 2005
- CVE-2004-035445Plan
Multiple format string vulnerabilities in GNU Anubis 3.6.0 through 3.6.2, 3.9.92 and 3.9.93 allow remote attackers to execute arbitrary code
CriticalCVSS 10.0Proof of conceptEPSS 16%gnu · anubisNov 23, 2004
- CVE-2008-194844Plan
The _gnutls_server_name_recv_params function in lib/ext_server_name.c in libgnutls in gnutls-serv in GnuTLS before 2.2.4 does not properly c
CriticalCVSS 10.0No exploitEPSS 12%gnu · gnutlsMay 21, 2008
- CVE-2021-2693742Plan
encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or
CriticalCVSS 9.8No exploitEPSS 9%gnu · screenFeb 9, 2021