Описание
The srec_scan function in bfd/srec.c in libdbfd in GNU binutils before 2.25 allows remote attackers to cause a denial of service (out-of-bounds read) via a small S-record.
An integer overflow flaw was found in the way the strings utility processed certain files. If a user were tricked into running the strings utility on a specially crafted file, it could cause the strings executable to crash.
Отчет
Red Hat Enterprise Linux 5 is now in Production 3 Phase of the support and maintenance life cycle. This has been rated as having Moderate security impact and is not currently planned to be addressed in future updates. For additional information, refer to the Red Hat Enterprise Linux Life Cycle: https://access.redhat.com/support/policy/updates/errata/.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Developer Toolset 2.1 | devtoolset-2-binutils | Will not fix | ||
Red Hat Enterprise Linux 5 | binutils | Will not fix | ||
Red Hat Enterprise Linux 5 | binutils220 | Will not fix | ||
Red Hat Enterprise Linux 6 | binutils | Will not fix | ||
Red Hat Enterprise Linux 6 | mingw32-binutils | Will not fix | ||
Red Hat Enterprise Linux 7 | binutils | Fixed | RHSA-2015:2079 | 19.11.2015 |
Показывать по
Дополнительная информация
Статус:
EPSS
4.3 Medium
CVSS2
Связанные уязвимости
The srec_scan function in bfd/srec.c in libdbfd in GNU binutils before 2.25 allows remote attackers to cause a denial of service (out-of-bounds read) via a small S-record.
The srec_scan function in bfd/srec.c in libdbfd in GNU binutils before 2.25 allows remote attackers to cause a denial of service (out-of-bounds read) via a small S-record.
The srec_scan function in bfd/srec.c in libdbfd in GNU binutils before ...
The srec_scan function in bfd/srec.c in libdbfd in GNU binutils before 2.25 allows remote attackers to cause a denial of service (out-of-bounds read) via a small S-record.
ELSA-2015-2079: binutils security, bug fix, and enhancement update (MODERATE)
EPSS
4.3 Medium
CVSS2