Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-2362

Опубликовано: 15 мая 2006
Источник: nvd
CVSS3: 7.3
CVSS2: 7.5
EPSS Низкий

Описание

Buffer overflow in getsym in tekhex.c in libbfd in Free Software Foundation GNU Binutils before 20060423, as used by GNU strings, allows context-dependent attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a file with a crafted Tektronix Hex Format (TekHex) record in which the length character is not a valid hexadecimal character.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:gnu:binutils:*:*:*:*:*:*:*:*
Версия до 2.17 (исключая)

EPSS

Процентиль: 90%
0.05512
Низкий

7.3 High

CVSS3

7.5 High

CVSS2

Дефекты

CWE-787
CWE-787

Связанные уязвимости

CVSS3: 7.3
ubuntu
больше 19 лет назад

Buffer overflow in getsym in tekhex.c in libbfd in Free Software Foundation GNU Binutils before 20060423, as used by GNU strings, allows context-dependent attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a file with a crafted Tektronix Hex Format (TekHex) record in which the length character is not a valid hexadecimal character.

CVSS3: 7.3
debian
больше 19 лет назад

Buffer overflow in getsym in tekhex.c in libbfd in Free Software Found ...

CVSS3: 7.3
github
больше 3 лет назад

Buffer overflow in getsym in tekhex.c in libbfd in Free Software Foundation GNU Binutils before 20060423, as used by GNU strings, allows context-dependent attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a file with a crafted Tektronix Hex Format (TekHex) record in which the length character is not a valid hexadecimal character.

EPSS

Процентиль: 90%
0.05512
Низкий

7.3 High

CVSS3

7.5 High

CVSS2

Дефекты

CWE-787
CWE-787