Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

GNU — Vulnerabilities & Security Advisories 134

Browse all 134 CVE security advisories affecting GNU. AI-powered Chinese analysis, POCs, and references for each vulnerability.

GNU provides a comprehensive collection of free software essential for operating system functionality, primarily serving as the foundational userland for Linux distributions. Its core use case involves delivering command-line utilities, development tools, and system libraries that enable software compilation and execution. Historically, vulnerabilities within the GNU ecosystem have frequently involved buffer overflows and integer overflows, often leading to remote code execution or denial of service conditions. While cross-site scripting is less relevant to its command-line nature, privilege escalation risks have emerged in specific components like coreutils and grep when handling malformed input. Notable security incidents have included critical flaws in GnuPG and Bash, highlighting the importance of rigorous input validation. With seventy-seven recorded CVEs, the project maintains a steady patch cycle, emphasizing stability and security through open-source collaboration and continuous code review processes.

CVE ID Title CVSS Severity Published
CVE-2025-5899 GNU PSPP pspp-convert.c parse_variables_option free of memory not on the heap — PSPP CWE-590 5.3 Medium 2025-06-09
CVE-2025-5898 GNU PSPP pspp-convert.c parse_variables_option out-of-bounds write — PSPP CWE-787 5.3 Medium 2025-06-09
CVE-2025-5245 GNU Binutils objdump debug.c debug_type_samep memory corruption — Binutils CWE-119 5.3 Medium 2025-05-27
CVE-2025-5244 GNU Binutils ld elflink.c elf_gc_sweep memory corruption — Binutils CWE-119 5.3 Medium 2025-05-27
CVE-2025-5001 GNU PSPP pspp-convert.c calloc integer overflow — PSPP CWE-190 3.3 Low 2025-05-20
CVE-2025-48188 GNU PSPP 安全漏洞 — PSPP CWE-125 2.9 Low 2025-05-16
CVE-2025-47814 GNU PSPP 安全漏洞 — PSPP CWE-122 4.5 Medium 2025-05-10
CVE-2025-47816 GNU PSPP 安全漏洞 — PSPP CWE-125 2.9 Low 2025-05-10
CVE-2025-47815 GNU PSPP 安全漏洞 — PSPP CWE-122 4.5 Medium 2025-05-10
CVE-2025-47229 GNU PSPP 安全漏洞 — PSPP CWE-617 2.9 Low 2025-05-03
CVE-2025-43921 GNU Mailman 安全漏洞 — Mailman CWE-863 5.3 Medium 2025-04-20
CVE-2025-43919 GNU Mailman 安全漏洞 — Mailman CWE-24 5.8 Medium 2025-04-20
CVE-2025-43920 GNU Mailman 安全漏洞 — Mailman CWE-78 5.4 Medium 2025-04-20
CVE-2025-3198 GNU Binutils objdump bucomm.c display_info memory leak — Binutils CWE-401 3.3 Low 2025-04-04
CVE-2025-1377 GNU elfutils eu-strip strip.c gelf_getsymshndx denial of service — elfutils CWE-404 3.3 Low 2025-02-17
CVE-2025-1376 GNU elfutils eu-strip elf_strptr.c elf_strptr denial of service — elfutils CWE-404 2.5 Low 2025-02-17
CVE-2025-1372 GNU elfutils eu-readelf readelf.c print_string_section buffer overflow — elfutils CWE-120 5.3 Medium 2025-02-17
CVE-2025-1371 GNU elfutils eu-read readelf.c handle_dynamic_symtab null pointer dereference — elfutils CWE-476 3.3 Low 2025-02-17
CVE-2025-1365 GNU elfutils eu-readelf readelf.c process_symtab buffer overflow — elfutils CWE-120 5.3 Medium 2025-02-16
CVE-2025-1352 GNU elfutils eu-readelf libdw_alloc.c __libdw_thread_tail memory corruption — elfutils CWE-119 5.0 Medium 2025-02-16
CVE-2025-1182 GNU Binutils ld elflink.c bfd_elf_reloc_symbol_deleted_p memory corruption — Binutils CWE-119 5.0 Medium 2025-02-11
CVE-2025-1181 GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec memory corruption — Binutils CWE-119 5.0 Medium 2025-02-11
CVE-2025-1180 GNU Binutils ld elf-eh-frame.c _bfd_elf_write_section_eh_frame memory corruption — Binutils CWE-119 3.1 Low 2025-02-11
CVE-2025-1179 GNU Binutils ld libbfd.c bfd_putl64 memory corruption — Binutils CWE-119 5.0 Medium 2025-02-11
CVE-2025-1178 GNU Binutils ld libbfd.c bfd_putl64 memory corruption — Binutils CWE-119 5.6 Medium 2025-02-11
CVE-2025-1176 GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec heap-based overflow — Binutils CWE-122 5.0 Medium 2025-02-11
CVE-2025-1153 GNU Binutils format.c bfd_set_format memory corruption — Binutils CWE-119 3.1 Low 2025-02-10
CVE-2025-1152 GNU Binutils ld xstrdup.c xstrdup memory leak — Binutils CWE-401 3.1 Low 2025-02-10
CVE-2025-1151 GNU Binutils ld xmemdup.c xmemdup memory leak — Binutils CWE-401 3.1 Low 2025-02-10
CVE-2025-1150 GNU Binutils ld libbfd.c bfd_malloc memory leak — Binutils CWE-401 3.1 Low 2025-02-10

This page lists every published CVE security advisory associated with GNU. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.