Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-20673

Опубликовано: 04 янв. 2019
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.3
CVSS3: 5.5

Описание

The demangle_template function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31.1, contains an integer overflow vulnerability (for "Create an array for saving the template argument values") that can trigger a heap-based buffer overflow, as demonstrated by nm.

РелизСтатусПримечание
bionic

ignored

end of standard support
cosmic

ignored

end of life
devel

not-affected

2.36.1-2ubuntu1
disco

ignored

end of life
eoan

ignored

end of life
esm-infra-legacy/trusty

ignored

intrusive fix
esm-infra/bionic

ignored

intrusive fix
esm-infra/focal

not-affected

2.34-6ubuntu1.1
esm-infra/xenial

ignored

intrusive fix
focal

not-affected

2.34-6ubuntu1.1

Показывать по

Ссылки на источники

EPSS

Процентиль: 32%
0.00119
Низкий

4.3 Medium

CVSS2

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.3
redhat
почти 7 лет назад

The demangle_template function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31.1, contains an integer overflow vulnerability (for "Create an array for saving the template argument values") that can trigger a heap-based buffer overflow, as demonstrated by nm.

CVSS3: 5.5
nvd
почти 7 лет назад

The demangle_template function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31.1, contains an integer overflow vulnerability (for "Create an array for saving the template argument values") that can trigger a heap-based buffer overflow, as demonstrated by nm.

CVSS3: 5.5
debian
почти 7 лет назад

The demangle_template function in cplus-dem.c in GNU libiberty, as dis ...

rocky
около 4 лет назад

Low: gcc security and bug fix update

CVSS3: 5.5
github
больше 3 лет назад

The demangle_template function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31.1, contains an integer overflow vulnerability (for "Create an array for saving the template argument values") that can trigger a heap-based buffer overflow, as demonstrated by nm.

EPSS

Процентиль: 32%
0.00119
Низкий

4.3 Medium

CVSS2

5.5 Medium

CVSS3