Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-19932

Опубликовано: 07 дек. 2018
Источник: nvd
CVSS3: 5.5
CVSS2: 4.3
EPSS Низкий

Описание

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils through 2.31. There is an integer overflow and infinite loop caused by the IS_CONTAINED_BY_LMA macro in elf.c.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:gnu:binutils:*:*:*:*:*:*:*:*
Версия до 2.31 (включая)
Конфигурация 2

Одновременно

cpe:2.3:a:netapp:vasa_provider:*:*:*:*:*:*:*:*
Версия от 7.2 (включая)
cpe:2.3:o:netapp:cluster_data_ontap:-:*:*:*:*:*:*:*

EPSS

Процентиль: 62%
0.0042
Низкий

5.5 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 7 лет назад

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils through 2.31. There is an integer overflow and infinite loop caused by the IS_CONTAINED_BY_LMA macro in elf.c.

CVSS3: 3.3
redhat
около 7 лет назад

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils through 2.31. There is an integer overflow and infinite loop caused by the IS_CONTAINED_BY_LMA macro in elf.c.

CVSS3: 5.5
debian
около 7 лет назад

An issue was discovered in the Binary File Descriptor (BFD) library (a ...

CVSS3: 5.5
github
больше 3 лет назад

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils through 2.31. There is an integer overflow and infinite loop caused by the IS_CONTAINED_BY_LMA macro in elf.c.

CVSS3: 6.5
fstec
около 7 лет назад

Уязвимость макроса IS_CONTAINED_BY_LMA компонента bfd/elf.c программного средства разработки GNU Binutils, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 62%
0.0042
Низкий

5.5 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-190