CVE-2013-0221: Opensuse

Medium severity, CVSS 4.3. EPSS: 7.2% chance of exploitation in the next 30 days.

The SUSE coreutils-i18n.patch for GNU coreutils allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a long string to the sort command, when using the (1) -d or (2) -M switch, which triggers a stack-based buffer overflow in the alloca function.

Affected products

  • Opensuse Opensuse: version 12.1 only; version 12.2 only
  • Red Hat Enterprise Linux: version 6.0 only

Published 2013-11-23. Last modified 2026-06-16.