Show filters
1,191 Total Results
Displaying 501-510 of 1,191
Sort by:
Attacker Value
Unknown

CVE-2018-10373

Disclosure Date: April 25, 2018 (last updated November 26, 2024)
concat_filename in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted binary file, as demonstrated by nm-new.
0
Attacker Value
Unknown

CVE-2018-10372

Disclosure Date: April 25, 2018 (last updated November 26, 2024)
process_cu_tu_index in dwarf.c in GNU Binutils 2.30 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted binary file, as demonstrated by readelf.
0
Attacker Value
Unknown

CVE-2018-9996

Disclosure Date: April 10, 2018 (last updated November 26, 2024)
An issue was discovered in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30. Stack Exhaustion occurs in the C++ demangling functions provided by libiberty, and there are recursive stack frames: demangle_template_value_parm, demangle_integral_value, and demangle_expression.
0
Attacker Value
Unknown

CVE-2018-1000156

Disclosure Date: April 06, 2018 (last updated November 26, 2024)
GNU Patch version 2.7.6 contains an input validation vulnerability when processing patch files, specifically the EDITOR_PROGRAM invocation (using ed) can result in code execution. This attack appear to be exploitable via a patch file processed via the patch utility. This is similar to FreeBSD's CVE-2015-1418 however although they share a common ancestry the code bases have diverged over time.
0
Attacker Value
Unknown

CVE-2018-9234

Disclosure Date: April 04, 2018 (last updated November 26, 2024)
GnuPG 2.2.4 and 2.2.5 does not enforce a configuration in which key certification requires an offline master Certify key, which results in apparently valid certifications that occurred only with access to a signing subkey.
0
Attacker Value
Unknown

CVE-2018-9138

Disclosure Date: March 30, 2018 (last updated November 26, 2024)
An issue was discovered in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.29 and 2.30. Stack Exhaustion occurs in the C++ demangling functions provided by libiberty, and there are recursive stack frames: demangle_nested_args, demangle_args, do_arg, and do_type.
0
Attacker Value
Unknown

CVE-2018-8945

Disclosure Date: March 22, 2018 (last updated November 26, 2024)
The bfd_section_from_shdr function in elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to cause a denial of service (segmentation fault) via a large attribute section.
0
Attacker Value
Unknown

CVE-2018-1000097

Disclosure Date: March 13, 2018 (last updated November 26, 2024)
Sharutils sharutils (unshar command) version 4.15.2 contains a Buffer Overflow vulnerability in Affected component on the file unshar.c at line 75, function looks_like_c_code. Failure to perform checking of the buffer containing input line. that can result in Could lead to code execution. This attack appear to be exploitable via Victim have to run unshar command on a specially crafted file..
0
Attacker Value
Unknown

CVE-2014-5044

Disclosure Date: March 07, 2018 (last updated November 26, 2024)
Multiple integer overflows in libgfortran might allow remote attackers to execute arbitrary code or cause a denial of service (Fortran application crash) via vectors related to array allocation.
0
Attacker Value
Unknown

CVE-2018-7642

Disclosure Date: March 02, 2018 (last updated November 08, 2023)
The swap_std_reloc_in function in aoutx.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to cause a denial of service (aout_32_swap_std_reloc_out NULL pointer dereference and application crash) via a crafted ELF file, as demonstrated by objcopy.
0