Search CVE reports


Toggle filters

1 – 10 of 18 results


CVE-2025-5899

Medium priority
Needs evaluation

A vulnerability classified as critical was found in GNU PSPP 82fb509fb2fedd33e7ac0c46ca99e108bb3bdffb. Affected by this vulnerability is the function parse_variables_option of the file utilities/pspp-convert.c. The manipulation...

1 affected package

pspp

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pspp Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-5898

Medium priority
Needs evaluation

A vulnerability classified as critical has been found in GNU PSPP 82fb509fb2fedd33e7ac0c46ca99e108bb3bdffb. Affected is the function parse_variables_option of the file utilities/pspp-convert.c. The manipulation leads to...

1 affected package

pspp

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pspp Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-5001

Medium priority
Needs evaluation

A vulnerability was found in GNU PSPP 82fb509fb2fedd33e7ac0c46ca99e108bb3bdffb. It has been declared as problematic. This vulnerability affects the function calloc of the file pspp-convert.c. The manipulation of the argument -l...

1 affected package

pspp

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pspp Needs evaluation Needs evaluation Not in release Needs evaluation
Show less packages

CVE-2025-48188

Medium priority
Needs evaluation

libpspp-core.a in GNU PSPP through 2.0.1 has an incorrect call from fill_buffer (in data/encrypted-file.c) to the Gnulib rijndaelDecrypt function, leading to a heap-based buffer over-read.

1 affected package

pspp

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pspp Needs evaluation Needs evaluation Not in release Needs evaluation
Show less packages

CVE-2025-47816

Medium priority
Needs evaluation

libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause an spvxml-helpers.c spvxml_parse_attributes out-of-bounds read, related to extra content at the end of a document.

1 affected package

pspp

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pspp Needs evaluation Needs evaluation Not in release Needs evaluation
Show less packages

CVE-2025-47815

Medium priority
Needs evaluation

libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a heap-based buffer overflow in inflate_read (called indirectly from zip_member_read_all) in zip-reader.c.

1 affected package

pspp

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pspp Needs evaluation Needs evaluation Not in release Needs evaluation
Show less packages

CVE-2025-47814

Medium priority
Needs evaluation

libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a heap-based buffer overflow in inflate_read (called indirectly from spv_read_xml_member) in zip-reader.c.

1 affected package

pspp

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pspp Needs evaluation Needs evaluation Not in release Needs evaluation
Show less packages

CVE-2025-47229

Medium priority
Needs evaluation

libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a denial of service (var_set_leave_quiet assertion failure and application exit) via crafted input data, such as data that triggers a call...

1 affected package

pspp

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pspp Needs evaluation Needs evaluation Not in release Needs evaluation
Show less packages

CVE-2022-39832

Medium priority
Needs evaluation

An issue was discovered in PSPP 1.6.2. There is a heap-based buffer overflow at the function read_string in utilities/pspp-dump-sav.c, which allows attackers to cause a denial of service (application crash) or possibly have...

1 affected package

pspp

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pspp Needs evaluation Needs evaluation Not in release Needs evaluation
Show less packages

CVE-2022-39831

Medium priority
Needs evaluation

An issue was discovered in PSPP 1.6.2. There is a heap-based buffer overflow at the function read_bytes_internal in utilities/pspp-dump-sav.c, which allows attackers to cause a denial of service (application crash) or possibly...

1 affected package

pspp

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pspp Needs evaluation Needs evaluation Not in release Needs evaluation
Show less packages