Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-17359

Опубликовано: 19 сент. 2018
Источник: redhat
CVSS3: 0
EPSS Низкий

Описание

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31. An invalid memory access exists in bfd_zalloc in opncls.c. Attackers could leverage this vulnerability to cause a denial of service (application crash) via a crafted ELF file.

Отчет

This flaw was found to be a duplicate of $DUP. Please see https://access.redhat.com/security/cve/$DUP for information about affected products and security errata.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5binutilsNot affected
Red Hat Enterprise Linux 5binutils220Not affected
Red Hat Enterprise Linux 6binutilsNot affected
Red Hat Enterprise Linux 7binutilsNot affected
Red Hat Enterprise Linux 8binutilsNot affected
Red Hat Enterprise Linux 8mingw-binutilsNot affected

Показывать по

Дополнительная информация

Дефект:
CWE-119
https://bugzilla.redhat.com/show_bug.cgi?id=1632914binutils: invalid memory access in bfd_zalloc in opncls.c

EPSS

Процентиль: 54%
0.00314
Низкий

0 Low

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 7 лет назад

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31. An invalid memory access exists in bfd_zalloc in opncls.c. Attackers could leverage this vulnerability to cause a denial of service (application crash) via a crafted ELF file.

CVSS3: 5.5
nvd
больше 7 лет назад

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31. An invalid memory access exists in bfd_zalloc in opncls.c. Attackers could leverage this vulnerability to cause a denial of service (application crash) via a crafted ELF file.

CVSS3: 5.5
debian
больше 7 лет назад

An issue was discovered in the Binary File Descriptor (BFD) library (a ...

CVSS3: 5.5
github
больше 3 лет назад

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31. An invalid memory access exists in bfd_zalloc in opncls.c. Attackers could leverage this vulnerability to cause a denial of service (application crash) via a crafted ELF file.

CVSS3: 6.5
fstec
больше 7 лет назад

Уязвимость функции bfd_zalloc компонента opncls.c программного средства разработки GNU Binutils, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 54%
0.00314
Низкий

0 Low

CVSS3