Описание
load_specific_debug_section in objdump.c in GNU Binutils through 2.31.1 contains an integer overflow vulnerability that can trigger a heap-based buffer overflow via a crafted section size.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 2.30-21ubuntu1~18.04.3 |
| cosmic | ignored | end of life |
| devel | not-affected | 2.32-8ubuntu1 |
| disco | not-affected | 2.32-7ubuntu4 |
| eoan | not-affected | 2.32-8ubuntu1 |
| esm-infra-legacy/trusty | released | 2.24-5ubuntu14.2+esm5 |
| esm-infra/bionic | released | 2.30-21ubuntu1~18.04.3 |
| esm-infra/focal | not-affected | 2.32-8ubuntu1 |
| esm-infra/xenial | released | 2.26.1-1ubuntu1~16.04.8+esm1 |
| focal | not-affected | 2.32-8ubuntu1 |
Показывать по
4.3 Medium
CVSS2
5.5 Medium
CVSS3
Связанные уязвимости
load_specific_debug_section in objdump.c in GNU Binutils through 2.31.1 contains an integer overflow vulnerability that can trigger a heap-based buffer overflow via a crafted section size.
load_specific_debug_section in objdump.c in GNU Binutils through 2.31.1 contains an integer overflow vulnerability that can trigger a heap-based buffer overflow via a crafted section size.
load_specific_debug_section in objdump.c in GNU Binutils through 2.31. ...
load_specific_debug_section in objdump.c in GNU Binutils through 2.31.1 contains an integer overflow vulnerability that can trigger a heap-based buffer overflow via a crafted section size.
Уязвимость функции load_specific_debug_section в GNU Binutils, связанная с целочисленным переполнением, позволяющая нарушителю вызвать отказ в обслуживании
4.3 Medium
CVSS2
5.5 Medium
CVSS3