CVE-2019-13636

MEDIUM5.9EPSS 4.3%

patch - security update

Published: 7/17/2019Modified: 12/3/2025
Also known as:ALPINE-CVE-2019-13636DEBIAN-CVE-2019-13636

Description

In GNU patch through 2.7.6, the following of symlinks is mishandled in certain cases other than input files. This affects inp.c and util.c.

Affected packages (3)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM5.9CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N

References (2)