An issue was discovered in GNU patch through 2.7.6. There is a segmentation fault, associated with a NULL pointer dereference, leading to a denial of service in the intuitdifftype function in pch.c, aka a "mangled rename" issue.
{ "binaries": [ { "binary_version": "2.7.1-4ubuntu2.4", "binary_name": "patch" } ], "availability": "No subscription required" }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2018/UBUNTU-CVE-2018-6951.json"
{ "binaries": [ { "binary_version": "2.7.5-1ubuntu0.16.04.1", "binary_name": "patch" } ], "availability": "No subscription required" }