Show filters
13 Total Results
Displaying 1-10 of 13
Sort by:
Attacker Value
Unknown

CVE-2019-17451

Disclosure Date: October 10, 2019 (last updated November 08, 2023)
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an integer overflow leading to a SEGV in _bfd_dwarf2_find_nearest_line in dwarf2.c, as demonstrated by nm.
Attacker Value
Unknown

CVE-2019-17450

Disclosure Date: October 10, 2019 (last updated November 27, 2024)
find_abstract_instance in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32, allows remote attackers to cause a denial of service (infinite recursion and application crash) via a crafted ELF file.
Attacker Value
Unknown

CVE-2019-14444

Disclosure Date: July 30, 2019 (last updated November 27, 2024)
apply_relocations in readelf.c in GNU Binutils 2.32 contains an integer overflow that allows attackers to trigger a write access violation (in byte_put_little_endian function in elfcomm.c) via an ELF file, as demonstrated by readelf.
Attacker Value
Unknown

CVE-2019-14250

Disclosure Date: July 24, 2019 (last updated November 27, 2024)
An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. simple_object_elf_match in simple-object-elf.c does not check for a zero shstrndx value, leading to an integer overflow and resultant heap-based buffer overflow.
Attacker Value
Unknown

CVE-2019-12972

Disclosure Date: June 26, 2019 (last updated November 08, 2023)
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. There is a heap-based buffer over-read in _bfd_doprnt in bfd.c because elf_object_p in elfcode.h mishandles an e_shstrndx section of type SHT_GROUP by omitting a trailing '\0' character.
Attacker Value
Unknown

CVE-2019-9071

Disclosure Date: February 24, 2019 (last updated November 27, 2024)
An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. It is a stack consumption issue in d_count_templates_scopes in cp-demangle.c after many recursive calls.
Attacker Value
Unknown

CVE-2019-9070

Disclosure Date: February 24, 2019 (last updated November 27, 2024)
An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. It is a heap-based buffer over-read in d_expression_1 in cp-demangle.c after many recursive calls.
Attacker Value
Unknown

CVE-2019-9077

Disclosure Date: February 24, 2019 (last updated November 27, 2024)
An issue was discovered in GNU Binutils 2.32. It is a heap-based buffer overflow in process_mips_specific in readelf.c via a malformed MIPS option section.
Attacker Value
Unknown

CVE-2019-9073

Disclosure Date: February 24, 2019 (last updated November 27, 2024)
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an attempted excessive memory allocation in _bfd_elf_slurp_version_tables in elf.c.
Attacker Value
Unknown

CVE-2019-9074

Disclosure Date: February 24, 2019 (last updated November 27, 2024)
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an out-of-bounds read leading to a SEGV in bfd_getl32 in libbfd.c, when called from pex64_get_runtime_function in pei-x86_64.c.