Show filters
1,191 Total Results
Displaying 271-280 of 1,191
Sort by:
Attacker Value
Unknown
CVE-2020-35495
Disclosure Date: January 04, 2021 (last updated February 22, 2025)
There's a flaw in binutils /bfd/pef.c. An attacker who is able to submit a crafted input file to be processed by the objdump program could cause a null pointer dereference. The greatest threat from this flaw is to application availability. This flaw affects binutils versions prior to 2.34.
0
Attacker Value
Unknown
CVE-2020-35448
Disclosure Date: December 27, 2020 (last updated February 22, 2025)
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35.1. A heap-based buffer over-read can occur in bfd_getl_signed_32 in libbfd.c because sh_entsize is not validated in _bfd_elf_slurp_secondary_reloc_section in elf.c.
0
Attacker Value
Unknown
CVE-2020-16590
Disclosure Date: December 09, 2020 (last updated February 22, 2025)
A double free vulnerability exists in the Binary File Descriptor (BFD) (aka libbrd) in GNU Binutils 2.35 in the process_symbol_table, as demonstrated in readelf, via a crafted file.
0
Attacker Value
Unknown
CVE-2020-16599
Disclosure Date: December 09, 2020 (last updated February 22, 2025)
A Null Pointer Dereference vulnerability exists in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35, in _bfd_elf_get_symbol_version_string, as demonstrated in nm-new, that can cause a denial of service via a crafted file.
0
Attacker Value
Unknown
CVE-2020-16591
Disclosure Date: December 09, 2020 (last updated February 22, 2025)
A Denial of Service vulnerability exists in the Binary File Descriptor (BFD) in GNU Binutils 2.35 due to an invalid read in process_symbol_table, as demonstrated in readeif.
0
Attacker Value
Unknown
CVE-2020-16593
Disclosure Date: December 09, 2020 (last updated February 22, 2025)
A Null Pointer Dereference vulnerability exists in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35, in scan_unit_for_symbols, as demonstrated in addr2line, that can cause a denial of service via a crafted file.
0
Attacker Value
Unknown
CVE-2020-16592
Disclosure Date: December 09, 2020 (last updated February 22, 2025)
A use after free issue exists in the Binary File Descriptor (BFD) library (aka libbfd) in GNU Binutils 2.34 in bfd_hash_lookup, as demonstrated in nm-new, that can cause a denial of service via a crafted file.
0
Attacker Value
Unknown
CVE-2020-29573
Disclosure Date: December 06, 2020 (last updated February 22, 2025)
sysdeps/i386/ldbl2mpn.c in the GNU C Library (aka glibc or libc6) before 2.23 on x86 targets has a stack-based buffer overflow if the input to any of the printf family of functions is an 80-bit long double with a non-canonical bit pattern, as seen when passing a \x00\x04\x00\x00\x00\x00\x00\x00\x00\x04 value to sprintf. NOTE: the issue does not affect glibc by default in 2016 or later (i.e., 2.23 or later) because of commits made in 2015 for inlining of C99 math functions through use of GCC built-ins. In other words, the reference to 2.23 is intentional despite the mention of "Fixed for glibc 2.33" in the 26649 reference.
0
Attacker Value
Unknown
CVE-2020-29562
Disclosure Date: December 04, 2020 (last updated February 22, 2025)
The iconv function in the GNU C Library (aka glibc or libc6) 2.30 to 2.32, when converting UCS4 text containing an irreversible character, fails an assertion in the code path and aborts the program, potentially resulting in a denial of service.
0
Attacker Value
Unknown
CVE-1999-0199
Disclosure Date: October 06, 2020 (last updated February 22, 2025)
manual/search.texi in the GNU C Library (aka glibc) before 2.2 lacks a statement about the unspecified tdelete return value upon deletion of a tree's root, which might allow attackers to access a dangling pointer in an application whose developer was unaware of a documentation update from 1999.
0