Loading HuntDB...

GNU

15 Products 25 CVEs

CVE Severity Distribution (All Time)

Critical
3
High
7
Medium
5
Low
3

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 6 CVEs

Recent CVEs

View all
CVE-2024-56738 MEDIUM 7 months, 1 week ago

GNU GRUB (aka GRUB2) through 2.12 does not use a constant-time algorithm for grub_crypto_memcmp and thus allows side-channel attacks.

CVE-2024-56737 HIGH 7 months, 1 week ago

GNU GRUB (aka GRUB2) through 2.12 has a heap-based buffer overflow in fs/hfs.c via crafted sblock data in an HFS filesystem.

CVE-2024-53920 HIGH 8 months, 1 week ago

In elisp-mode.el in GNU Emacs before 30.1, a user who chooses to invoke elisp-completion-at-point (for code completion) on untrusted Emacs Lisp sourc…

CVE-2024-10524 MEDIUM 8 months, 2 weeks ago

Applications that use Wget to access a remote resource using shorthand URLs and pass arbitrary user credentials in the URL are vulnerable. In these c…

CVE-2024-52867 HIGH 8 months, 2 weeks ago

guix-daemon in GNU Guix before 5ab3c4c allows privilege escalation because build outputs are accessible by local users before file metadata concerns …

CVE-2024-50610 LOW 9 months, 1 week ago

GSL (GNU Scientific Library) through 2.8 has an integer signedness error in gsl_siman_solve_many in siman/siman.c. When params.n_tries is negative, i…

Related Security News

DSA-5871-1 emacs - security update
2025-02-27 00:00 Debian.org

Two security vulnerabilities were discovered in Emacs: CVE-2024-53920 Elisp byte-compilation ('elisp-flymake-byte-compile') in the Flymake mode is now disabled for untrusted files. CVE-2025-1244 An i…

Emacs 30.1 released
2025-02-24 15:18 Lwn.net

The Emacs extensible text editor (among other things) has made a security release to address two vulnerabilities. Emacs 30.1 has fixes for CVE-2025-1244, which is a shell-command-injection flaw in th…