CVE-2018-17360
- EPSS 0.44%
- Veröffentlicht 23.09.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:54:15
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31. a heap-based buffer over-read in bfd_getl32 in libbfd.c allows an attacker to cause a denial of service through a crafted PE file. ...
CVE-2018-13033
- EPSS 1.48%
- Veröffentlicht 01.07.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 03:46:16
The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to cause a denial of service (excessive memory allocation and application crash) via a crafted ELF file, as demonstrated by _bfd_elf_p...
CVE-2018-12934
- EPSS 0.7%
- Veröffentlicht 28.06.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 03:46:08
remember_Ktype in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30, allows attackers to trigger excessive memory consumption (aka OOM). This can occur during execution of cxxfilt.
CVE-2018-12697
- EPSS 1.56%
- Veröffentlicht 23.06.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:45:41
A NULL pointer dereference (aka SEGV on unknown address 0x000000000000) was discovered in work_stuff_copy_to_from in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30. This can occur during execution of objdump.
CVE-2018-12698
- EPSS 1.46%
- Veröffentlicht 23.06.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:45:41
demangle_template in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30, allows attackers to trigger excessive memory consumption (aka OOM) during the "Create an array for saving the template argument values" XNEWVEC call. This can occ...
CVE-2018-12699
- EPSS 0.53%
- Veröffentlicht 23.06.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:45:42
finish_stab in stabs.c in GNU Binutils 2.30 allows attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact, as demonstrated by an out-of-bounds write of 8 bytes. This can occur during execution of...
CVE-2018-12641
- EPSS 0.72%
- Veröffentlicht 22.06.2018 12:29:00
- Zuletzt bearbeitet 21.11.2024 03:45:35
An issue was discovered in arm_pt in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30. Stack Exhaustion occurs in the C++ demangling functions provided by libiberty, and there are recursive stack frames: demangle_arm_hp_template, dem...
CVE-2018-10534
- EPSS 0.19%
- Veröffentlicht 29.04.2018 15:29:00
- Zuletzt bearbeitet 21.11.2024 03:41:30
The _bfd_XX_bfd_copy_private_bfd_data_common function in peXXigen.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, processes a negative Data Directory size with an unbounded loop that increases the valu...
CVE-2018-10535
- EPSS 0.12%
- Veröffentlicht 29.04.2018 15:29:00
- Zuletzt bearbeitet 21.11.2024 03:41:30
The ignore_section_sym function in elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, does not validate the output_section pointer in the case of a symtab entry with a "SECTION" type that has a "0" va...
CVE-2018-10372
- EPSS 0.33%
- Veröffentlicht 25.04.2018 09:29:00
- Zuletzt bearbeitet 21.11.2024 03:41:17
process_cu_tu_index in dwarf.c in GNU Binutils 2.30 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted binary file, as demonstrated by readelf.