Logo
vulnerabilityCVE-2023-4156
Name
CVE-2023-4156
Source
NVD ( link)Debian ( link)
Description
A heap out-of-bounds read flaw was found in builtin.c in the gawk package. This issue may lead to a crash and could be used to read sensitive information.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
gawk
Patched

Vulnerability Ratings#


4.4
CVSSv31
7.1
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
yocto
master
5.4.0
Not Affected
yocto
scarthgap
5.3.0
Not Affected

Resolved with patches#


gawk (yocto:kirkstone)

#
Title
Author
Resolve
1
Smal bug fix in builtin.c.
"Arnold D. Robbins" <arnold@skeeve.com>
CVE-2023-4156