Gnu

Pspp

18 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.02%
  • Published 09.06.2025 22:00:15
  • Last modified 12.06.2025 16:06:39

A vulnerability classified as critical was found in GNU PSPP 82fb509fb2fedd33e7ac0c46ca99e108bb3bdffb. Affected by this vulnerability is the function parse_variables_option of the file utilities/pspp-convert.c. The manipulation leads to free of memor...

  • EPSS 0.02%
  • Published 09.06.2025 21:31:06
  • Last modified 12.06.2025 16:06:39

A vulnerability classified as critical has been found in GNU PSPP 82fb509fb2fedd33e7ac0c46ca99e108bb3bdffb. Affected is the function parse_variables_option of the file utilities/pspp-convert.c. The manipulation leads to out-of-bounds write. The attac...

Exploit
  • EPSS 0.04%
  • Published 20.05.2025 21:31:05
  • Last modified 17.06.2025 14:11:34

A vulnerability was found in GNU PSPP 82fb509fb2fedd33e7ac0c46ca99e108bb3bdffb. It has been declared as problematic. This vulnerability affects the function calloc of the file pspp-convert.c. The manipulation of the argument -l leads to integer overf...

Exploit
  • EPSS 0.02%
  • Published 16.05.2025 00:00:00
  • Last modified 17.07.2025 20:33:11

libpspp-core.a in GNU PSPP through 2.0.1 has an incorrect call from fill_buffer (in data/encrypted-file.c) to the Gnulib rijndaelDecrypt function, leading to a heap-based buffer over-read.

Exploit
  • EPSS 0.04%
  • Published 10.05.2025 00:00:00
  • Last modified 16.06.2025 18:36:10

libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause an spvxml-helpers.c spvxml_parse_attributes out-of-bounds read, related to extra content at the end of a document.

Exploit
  • EPSS 0.04%
  • Published 10.05.2025 00:00:00
  • Last modified 12.06.2025 16:13:37

libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a heap-based buffer overflow in inflate_read (called indirectly from zip_member_read_all) in zip-reader.c.

Exploit
  • EPSS 0.04%
  • Published 10.05.2025 00:00:00
  • Last modified 12.06.2025 16:16:54

libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a heap-based buffer overflow in inflate_read (called indirectly from spv_read_xml_member) in zip-reader.c.

Exploit
  • EPSS 0.01%
  • Published 03.05.2025 00:00:00
  • Last modified 18.07.2025 15:54:13

libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a denial of service (var_set_leave_quiet assertion failure and application exit) via crafted input data, such as data that triggers a call from src/data/dictionary.c code into src/dat...

Exploit
  • EPSS 0.17%
  • Published 05.09.2022 05:15:07
  • Last modified 21.11.2024 07:18:20

An issue was discovered in PSPP 1.6.2. There is a heap-based buffer overflow at the function read_string in utilities/pspp-dump-sav.c, which allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact.

Exploit
  • EPSS 0.07%
  • Published 05.09.2022 05:15:07
  • Last modified 21.11.2024 07:18:20

An issue was discovered in PSPP 1.6.2. There is a heap-based buffer overflow at the function read_bytes_internal in utilities/pspp-dump-sav.c, which allows attackers to cause a denial of service (application crash) or possibly have unspecified other ...