Uutils
44 known vulnerabilities
Top Products
A logic error in the cut utility of uutils coreutils causes the utility to ignore the -s (only-delimited) flag when usin
A logic error in the cut utility of uutils coreutils causes the program to incorrectly interpret the literal two-byte st
A logic error in the tr utility of uutils coreutils causes the program to incorrectly define the [:graph:] and [:print:]
A logic error in the expr utility of uutils coreutils causes the program to evaluate parenthesized subexpressions during
A logic error in the env utility of uutils coreutils causes a failure to correctly parse command-line arguments when uti
A Time-of-Check to Time-of-Use (TOCTOU) vulnerability exists in the chcon utility of uutils coreutils during recursive o
A logic error in the split utility of uutils coreutils causes the corruption of output filenames when provided with non-
A Time-of-Check to Time-of-Use (TOCTOU) vulnerability exists in the split utility of uutils coreutils. The program attem
A logic error in the ln utility of uutils coreutils causes the program to reject source paths containing non-UTF-8 filen
A logic error in the ln utility of uutils coreutils allows the utility to dereference a symbolic link target even when t
The id utility in uutils coreutils exhibits incorrect behavior in its "pretty print" output when the real UID and effect
The id utility in uutils coreutils miscalculates the groups= section of its output. The implementation uses a user's rea
An argument parsing error in the kill utility of uutils coreutils incorrectly interprets kill -1 as a request to send th
A vulnerability exists in the chroot utility of uutils coreutils when using the --userspec option. The utility resolves
The nohup utility in uutils coreutils creates its default output file, nohup.out, without specifying explicit restricted
The printenv utility in uutils coreutils fails to display environment variables containing invalid UTF-8 byte sequences.
The mv utility in uutils coreutils improperly handles directory trees containing symbolic links during moves across file
A Time-of-Check to Time-of-Use (TOCTOU) race condition exists in the mv utility of uutils coreutils during cross-device
A vulnerability in the rm utility of uutils coreutils allows the bypass of safeguard mechanisms intended to protect the
The safe_traversal module in uutils coreutils, which provides protection against Time-of-Check to Time-of-Use (TOCTOU) s
The mknod utility in uutils coreutils fails to handle security labels atomically by creating device nodes before setting
The touch utility in uutils coreutils is vulnerable to a Time-of-Check to Time-of-Use (TOCTOU) race condition during fil
A Time-of-Check to Time-of-Use (TOCTOU) vulnerability in the cp utility of uutils coreutils allows an attacker to bypass
The cp utility in uutils coreutils, when performing recursive copies (-R), incorrectly treats character and block device
The cp utility in uutils coreutils is vulnerable to an information disclosure race condition. Destination files are init
A Time-of-Check to Time-of-Use (TOCTOU) vulnerability exists in the install utility of uutils coreutils when using the -
The install utility in uutils coreutils is vulnerable to a Time-of-Check to Time-of-Use (TOCTOU) race condition during f
A Time-of-Check to Time-of-Use (TOCTOU) vulnerability exists in the mv utility of uutils coreutils during cross-device m
The mkdir utility in uutils coreutils incorrectly applies permissions when using the -m flag by creating a directory wit
A Time-of-Check to Time-of-Use (TOCTOU) race condition exists in the mkfifo utility of uutils coreutils. The utility cre
The mv utility in uutils coreutils fails to preserve file ownership during moves across different filesystem boundaries.
The cp utility in uutils coreutils fails to properly handle setuid and setgid bits when ownership preservation fails. Wh
A vulnerability in the rm utility of uutils coreutils allows a bypass of the --preserve-root protection. The implementat
The sort utility in uutils coreutils is vulnerable to a process panic when using the --files0-from option with inputs co
The comm utility in uutils coreutils incorrectly consumes data from non-regular file inputs before performing comparison
The comm utility in uutils coreutils silently corrupts data by performing lossy UTF-8 conversion on all output lines. Th
A vulnerability in the tail utility of uutils coreutils allows for the exfiltration of sensitive file contents when usin
The dd utility in uutils coreutils suppresses errors during file truncation operations by unconditionally calling Result
The cut utility in uutils coreutils incorrectly handles the -s (only-delimited) option when a newline character is speci
The mktemp utility in uutils coreutils fails to properly handle an empty TMPDIR environment variable. Unlike GNU mktemp,
A vulnerability in uutils coreutils mkfifo allows for the unauthorized modification of permissions on existing files. Wh
A flaw in the ChownExecutor used by uutils coreutils chown and chgrp causes the utilities to return an incorrect exit co
The recursive mode (-R) of the chmod utility in uutils coreutils incorrectly handles exit codes when processing multiple
A vulnerability in the chmod utility of uutils coreutils allows users to bypass the --preserve-root safety mechanism. Th
Frequently Asked Questions
How many CVEs affect Uutils?
Uutils has 44 CVE records in our database, including 0 critical and 4 high severity vulnerabilities.
What are the most severe Uutils vulnerabilities?
Uutils has 0 critical severity (CVSS 9.0+) and 4 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Uutils vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Uutils products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Uutils Vulnerabilities
CyberStrike scans your infrastructure for Uutils vulnerabilities and provides real-time remediation guidance.
Get Started