Report: Ultimate Guide: CVE-2026-35377 - uutils coreutils env Local Denial of Service via Improper Handling of Backslashe...

Report: Ultimate Guide: CVE-2026-35377 - uutils coreutils env Local Denial of Service via Improper Handling of Backslashe...

CVE ID :CVE-2026-35377 Published : April 22, 2026, 4:09 p.m. | 1 hour, 8 minutes ago Description :A logic error in the env utility of uutils coreutils causes a failure to correctly parse command-line arguments when utilizing the -S (split-string) option. In GNU env, backslashes within single quotes are treated literally (with the exceptions of \\ and \'). However, the uutils implementation incorrectly attempts to validate these sequences, resulting in an

CVE Details

Published
April 22, 2026