Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

GNU — Vulnerabilities & Security Advisories 134

Browse all 134 CVE security advisories affecting GNU. AI-powered Chinese analysis, POCs, and references for each vulnerability.

GNU provides a comprehensive collection of free software essential for operating system functionality, primarily serving as the foundational userland for Linux distributions. Its core use case involves delivering command-line utilities, development tools, and system libraries that enable software compilation and execution. Historically, vulnerabilities within the GNU ecosystem have frequently involved buffer overflows and integer overflows, often leading to remote code execution or denial of service conditions. While cross-site scripting is less relevant to its command-line nature, privilege escalation risks have emerged in specific components like coreutils and grep when handling malformed input. Notable security incidents have included critical flaws in GnuPG and Bash, highlighting the importance of rigorous input validation. With seventy-seven recorded CVEs, the project maintains a steady patch cycle, emphasizing stability and security through open-source collaboration and continuous code review processes.

Found 12 results / 134 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-90622 GNU libredwg Layer Encoding dwg.spec DWG_TABLE null pointer dereference — libredwg CWE-476 3.3 Low 2026-09-14
CVE-2026-15520 GNU LibreDWG R2004 Section Decompression decode.c decompress_R2004_section heap-based overflow — LibreDWG CWE-122 5.3 Medium 2026-07-13
CVE-2026-15184 GNU LibreDWG DWG File dwg.c dwg_next_entity null pointer dereference — LibreDWG CWE-476 3.3 Low 2026-07-09
CVE-2026-15182 GNU LibreDWG BMP Image dwg.c dwg_bmp heap-based overflow — LibreDWG CWE-122 5.3 Medium 2026-07-09
CVE-2026-9605 GNU libredwg Dwgbmp Utility bits.c bit_read_RC heap-based overflow — libredwg CWE-122 7.3 High 2026-05-26
CVE-2026-9530 GNU LibreDWG Dwgbmp Utility decode.c read_2004_compressed_section out-of-bounds — LibreDWG CWE-125 3.3 Low 2026-05-26
CVE-2026-9529 GNU LibreDWG Dwggrep Utility dwggrep.c match_BLOCK_HEADER null pointer dereference — LibreDWG CWE-476 3.3 Low 2026-05-26
CVE-2026-9504 GNU LibreDWG Dwggrep Utility dwggrep.c bit_convert_TU out-of-bounds — LibreDWG CWE-125 3.3 Low 2026-05-25
CVE-2026-9503 GNU LibreDWG DWG File decode.c dwg_next_entity null pointer dereference — LibreDWG CWE-476 3.3 Low 2026-05-25
CVE-2026-9502 GNU LibreDWG Dwgread Utility decode.c decompress_R2004_section heap-based overflow — LibreDWG CWE-122 5.3 Medium 2026-05-25
CVE-2026-9501 GNU LibreDWG Dwgread Utility decode.c decompress_R2004_section assertion — LibreDWG CWE-617 3.3 Low 2026-05-25
CVE-2026-9500 GNU LibreDWG Dwgread Utility decode.c read_2004_compressed_section heap-based overflow — LibreDWG CWE-122 5.3 Medium 2026-05-25

This page lists every published CVE security advisory associated with GNU. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.