CVE-2018-12697
- EPSS 5.23%
- Veröffentlicht 23.06.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:45:41
A NULL pointer dereference (aka SEGV on unknown address 0x000000000000) was discovered in work_stuff_copy_to_from in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30. This can occur during execution of objdump.
CVE-2018-12698
- EPSS 6.69%
- Veröffentlicht 23.06.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:45:41
demangle_template in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30, allows attackers to trigger excessive memory consumption (aka OOM) during the "Create an array for saving the template argument values" XNEWVEC call. This can occ...
CVE-2018-12699
- EPSS 4.59%
- Veröffentlicht 23.06.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:45:42
finish_stab in stabs.c in GNU Binutils 2.30 allows attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact, as demonstrated by an out-of-bounds write of 8 bytes. This can occur during execution of...
CVE-2018-12641
- EPSS 2.08%
- Veröffentlicht 22.06.2018 12:29:00
- Zuletzt bearbeitet 21.11.2024 03:45:35
An issue was discovered in arm_pt in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30. Stack Exhaustion occurs in the C++ demangling functions provided by libiberty, and there are recursive stack frames: demangle_arm_hp_template, dem...
CVE-2018-10534
- EPSS 1.89%
- Veröffentlicht 29.04.2018 15:29:00
- Zuletzt bearbeitet 21.11.2024 03:41:30
The _bfd_XX_bfd_copy_private_bfd_data_common function in peXXigen.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, processes a negative Data Directory size with an unbounded loop that increases the valu...
CVE-2018-10535
- EPSS 2.24%
- Veröffentlicht 29.04.2018 15:29:00
- Zuletzt bearbeitet 21.11.2024 03:41:30
The ignore_section_sym function in elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, does not validate the output_section pointer in the case of a symtab entry with a "SECTION" type that has a "0" va...
CVE-2018-10372
- EPSS 2.41%
- Veröffentlicht 25.04.2018 09:29:00
- Zuletzt bearbeitet 21.11.2024 03:41:17
process_cu_tu_index in dwarf.c in GNU Binutils 2.30 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted binary file, as demonstrated by readelf.
CVE-2018-10373
- EPSS 3.47%
- Veröffentlicht 25.04.2018 09:29:00
- Zuletzt bearbeitet 21.11.2024 03:41:17
concat_filename in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted binary file...
CVE-2018-9996
- EPSS 1.29%
- Veröffentlicht 10.04.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 04:16:00
An issue was discovered in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30. Stack Exhaustion occurs in the C++ demangling functions provided by libiberty, and there are recursive stack frames: demangle_template_value_parm, demangle_...
CVE-2018-9138
- EPSS 1.06%
- Veröffentlicht 30.03.2018 08:29:00
- Zuletzt bearbeitet 21.11.2024 04:15:03
An issue was discovered in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.29 and 2.30. Stack Exhaustion occurs in the C++ demangling functions provided by libiberty, and there are recursive stack frames: demangle_nested_args, demangle...