Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-2226

Опубликовано: 05 фев. 2016
Источник: redhat
CVSS3: 3.3
CVSS2: 6.8
EPSS Низкий

Описание

Integer overflow in the string_appends function in cplus-dem.c in libiberty allows remote attackers to execute arbitrary code via a crafted executable, which triggers a buffer overflow.

Отчет

Red Hat Product Security has rated this issue as having Low security impact. This issue is not currently planned to be addressed in future updates. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5binutilsWill not fix
Red Hat Enterprise Linux 5compat-gcc-295Will not fix
Red Hat Enterprise Linux 5compat-gcc-296Will not fix
Red Hat Enterprise Linux 5compat-gcc-32Will not fix
Red Hat Enterprise Linux 5compat-gcc-34Will not fix
Red Hat Enterprise Linux 5gccWill not fix
Red Hat Enterprise Linux 5gdbWill not fix
Red Hat Enterprise Linux 6binutilsWill not fix
Red Hat Enterprise Linux 6compat-gcc-295Will not fix
Red Hat Enterprise Linux 6compat-gcc-296Will not fix

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-122

EPSS

Процентиль: 93%
0.09327
Низкий

3.3 Low

CVSS3

6.8 Medium

CVSS2

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 9 лет назад

Integer overflow in the string_appends function in cplus-dem.c in libiberty allows remote attackers to execute arbitrary code via a crafted executable, which triggers a buffer overflow.

CVSS3: 7.8
nvd
почти 9 лет назад

Integer overflow in the string_appends function in cplus-dem.c in libiberty allows remote attackers to execute arbitrary code via a crafted executable, which triggers a buffer overflow.

CVSS3: 7.8
debian
почти 9 лет назад

Integer overflow in the string_appends function in cplus-dem.c in libi ...

CVSS3: 7.8
github
больше 3 лет назад

Integer overflow in the string_appends function in cplus-dem.c in libiberty allows remote attackers to execute arbitrary code via a crafted executable, which triggers a buffer overflow.

EPSS

Процентиль: 93%
0.09327
Низкий

3.3 Low

CVSS3

6.8 Medium

CVSS2