patch vulnerabilities
CVEs whose affected-version data names the patch package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-56289Medium· 5.5GNU patch is vulnerable to a denial of service (DoS) due to improper validation of hunk (single block of changes in diff) line offsets in unified-diff input
GNU patch is vulnerable to a denial of service (DoS) due to improper validation of hunk (single block of changes in diff) line offsets in unified-diff input. A specially crafted patch can specify an extremely large line number, causing t…
▾ Sunlitgnu · patchEPSS 0.17%via NVD
CVE-2026-56288Medium· 5.5GNU patch is vulnerable to a NULL pointer dereference when processing a specially crafted unified-diff patch file
GNU patch is vulnerable to a NULL pointer dereference when processing a specially crafted unified-diff patch file. Improper handling of consecutive end-of-file newline markers can corrupt internal hunk (single block of changes in diff) d…
▾ Sunlitgnu · patchEPSS 0.17%via NVD