CVE-2019-9073
- EPSS 0.28%
- Published 24.02.2019 00:29:00
- Last modified 21.11.2024 04:50:55
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an attempted excessive memory allocation in _bfd_elf_slurp_version_tables in elf.c.
CVE-2019-9074
- EPSS 0.12%
- Published 24.02.2019 00:29:00
- Last modified 21.11.2024 04:50:56
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an out-of-bounds read leading to a SEGV in bfd_getl32 in libbfd.c, when called from pex64_get_runtime_function in pei-x86_64....
CVE-2019-9075
- EPSS 0.22%
- Published 24.02.2019 00:29:00
- Last modified 21.11.2024 04:50:56
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is a heap-based buffer overflow in _bfd_archive_64_bit_slurp_armap in archive64.c.
CVE-2019-9076
- EPSS 0.2%
- Published 24.02.2019 00:29:00
- Last modified 21.11.2024 04:50:56
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an attempted excessive memory allocation in elf_read_notes in elf.c.
CVE-2019-9077
- EPSS 0.23%
- Published 24.02.2019 00:29:00
- Last modified 21.11.2024 04:50:56
An issue was discovered in GNU Binutils 2.32. It is a heap-based buffer overflow in process_mips_specific in readelf.c via a malformed MIPS option section.
CVE-2018-20712
- EPSS 1.07%
- Published 15.01.2019 00:29:00
- Last modified 21.11.2024 04:02:00
A heap-based buffer over-read exists in the function d_expression_1 in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31.1. A crafted input can cause segmentation faults, leading to denial-of-service, as demonstrated by c++filt.
CVE-2018-20673
- EPSS 0.12%
- Published 04.01.2019 18:29:00
- Last modified 21.11.2024 04:01:57
The demangle_template function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31.1, contains an integer overflow vulnerability (for "Create an array for saving the template argument values") that can trigger a heap-based buffer ove...
CVE-2018-20671
- EPSS 0.09%
- Published 04.01.2019 16:29:00
- Last modified 21.11.2024 04:01:57
load_specific_debug_section in objdump.c in GNU Binutils through 2.31.1 contains an integer overflow vulnerability that can trigger a heap-based buffer overflow via a crafted section size.
CVE-2018-20657
- EPSS 0.17%
- Published 02.01.2019 14:29:00
- Last modified 21.11.2024 04:01:56
The demangle_template function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31.1, has a memory leak via a crafted string, leading to a denial of service (memory consumption), as demonstrated by cxxfilt, a related issue to CVE-201...
CVE-2018-20651
- EPSS 0.3%
- Published 01.01.2019 16:29:00
- Last modified 21.11.2024 04:01:56
A NULL pointer dereference was discovered in elf_link_add_object_symbols in elflink.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31.1. This occurs for a crafted ET_DYN with no program headers. A special...