Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-20673

Опубликовано: 04 янв. 2019
Источник: nvd
CVSS3: 5.5
CVSS2: 4.3
EPSS Низкий

Описание

The demangle_template function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31.1, contains an integer overflow vulnerability (for "Create an array for saving the template argument values") that can trigger a heap-based buffer overflow, as demonstrated by nm.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:gnu:binutils:2.31.1:*:*:*:*:*:*:*

EPSS

Процентиль: 32%
0.00119
Низкий

5.5 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 7 лет назад

The demangle_template function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31.1, contains an integer overflow vulnerability (for "Create an array for saving the template argument values") that can trigger a heap-based buffer overflow, as demonstrated by nm.

CVSS3: 5.3
redhat
почти 7 лет назад

The demangle_template function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31.1, contains an integer overflow vulnerability (for "Create an array for saving the template argument values") that can trigger a heap-based buffer overflow, as demonstrated by nm.

CVSS3: 5.5
debian
почти 7 лет назад

The demangle_template function in cplus-dem.c in GNU libiberty, as dis ...

rocky
около 4 лет назад

Low: gcc security and bug fix update

CVSS3: 5.5
github
больше 3 лет назад

The demangle_template function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31.1, contains an integer overflow vulnerability (for "Create an array for saving the template argument values") that can trigger a heap-based buffer overflow, as demonstrated by nm.

EPSS

Процентиль: 32%
0.00119
Низкий

5.5 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-190