CVE-2018-12697
- EPSS 1.56%
- Published 23.06.2018 23:29:00
- Last modified 21.11.2024 03:45:41
A NULL pointer dereference (aka SEGV on unknown address 0x000000000000) was discovered in work_stuff_copy_to_from in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30. This can occur during execution of objdump.
CVE-2018-12698
- EPSS 1.46%
- Published 23.06.2018 23:29:00
- Last modified 21.11.2024 03:45:41
demangle_template in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30, allows attackers to trigger excessive memory consumption (aka OOM) during the "Create an array for saving the template argument values" XNEWVEC call. This can occ...
CVE-2018-12699
- EPSS 0.53%
- Published 23.06.2018 23:29:00
- Last modified 21.11.2024 03:45:42
finish_stab in stabs.c in GNU Binutils 2.30 allows attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact, as demonstrated by an out-of-bounds write of 8 bytes. This can occur during execution of...
CVE-2018-12641
- EPSS 0.72%
- Published 22.06.2018 12:29:00
- Last modified 21.11.2024 03:45:35
An issue was discovered in arm_pt in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30. Stack Exhaustion occurs in the C++ demangling functions provided by libiberty, and there are recursive stack frames: demangle_arm_hp_template, dem...
CVE-2018-10534
- EPSS 0.19%
- Published 29.04.2018 15:29:00
- Last modified 21.11.2024 03:41:30
The _bfd_XX_bfd_copy_private_bfd_data_common function in peXXigen.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, processes a negative Data Directory size with an unbounded loop that increases the valu...
CVE-2018-10535
- EPSS 0.12%
- Published 29.04.2018 15:29:00
- Last modified 21.11.2024 03:41:30
The ignore_section_sym function in elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, does not validate the output_section pointer in the case of a symtab entry with a "SECTION" type that has a "0" va...
CVE-2018-10372
- EPSS 0.33%
- Published 25.04.2018 09:29:00
- Last modified 21.11.2024 03:41:17
process_cu_tu_index in dwarf.c in GNU Binutils 2.30 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted binary file, as demonstrated by readelf.
CVE-2018-10373
- EPSS 0.83%
- Published 25.04.2018 09:29:00
- Last modified 21.11.2024 03:41:17
concat_filename in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted binary file...
CVE-2018-9996
- EPSS 0.39%
- Published 10.04.2018 22:29:00
- Last modified 21.11.2024 04:16:00
An issue was discovered in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30. Stack Exhaustion occurs in the C++ demangling functions provided by libiberty, and there are recursive stack frames: demangle_template_value_parm, demangle_...
CVE-2018-9138
- EPSS 0.3%
- Published 30.03.2018 08:29:00
- Last modified 21.11.2024 04:15:03
An issue was discovered in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.29 and 2.30. Stack Exhaustion occurs in the C++ demangling functions provided by libiberty, and there are recursive stack frames: demangle_nested_args, demangle...