Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-7225

Опубликовано: 22 мар. 2017
Источник: debian
EPSS Низкий

Описание

The find_nearest_line function in addr2line in GNU Binutils 2.28 does not handle the case where the main file name and the directory name are both empty, triggering a NULL pointer dereference and an invalid write, and leading to a program crash.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
binutilsfixed2.27.51.20161201-1package
binutilsignoredjessiepackage
binutilsno-dsawheezypackage

Примечания

  • https://sourceware.org/bugzilla/show_bug.cgi?id=20891

  • https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=50455f1ab2935f7321215dfa681745c9b1cb5b19

EPSS

Процентиль: 62%
0.00432
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 9 лет назад

The find_nearest_line function in addr2line in GNU Binutils 2.28 does not handle the case where the main file name and the directory name are both empty, triggering a NULL pointer dereference and an invalid write, and leading to a program crash.

CVSS3: 3.3
redhat
около 9 лет назад

The find_nearest_line function in addr2line in GNU Binutils 2.28 does not handle the case where the main file name and the directory name are both empty, triggering a NULL pointer dereference and an invalid write, and leading to a program crash.

CVSS3: 7.5
nvd
почти 9 лет назад

The find_nearest_line function in addr2line in GNU Binutils 2.28 does not handle the case where the main file name and the directory name are both empty, triggering a NULL pointer dereference and an invalid write, and leading to a program crash.

CVSS3: 7.5
github
больше 3 лет назад

The find_nearest_line function in addr2line in GNU Binutils 2.28 does not handle the case where the main file name and the directory name are both empty, triggering a NULL pointer dereference and an invalid write, and leading to a program crash.

suse-cvrf
больше 7 лет назад

Security update for binutils

EPSS

Процентиль: 62%
0.00432
Низкий