Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
gnu binutils vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2018-12699
finish_stab in stabs.c in GNU Binutils 2.30 allows malicious users to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact, as demonstrated by an out-of-bounds write of 8 bytes. This can occur during execution of objdump.
Gnu Binutils 2.30
Canonical Ubuntu Linux 16.04.4
2 Github repositories
9.8
CVSSv3
CVE-2017-7614
elflink.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has a "member access within null pointer" undefined behavior issue, which might allow remote malicious users to cause a denial of service (application crash) or poss...
Gnu Binutils 2.28
9.8
CVSSv3
CVE-2014-9939
ihex.c in GNU Binutils prior to 2.26 contains a stack buffer overflow when printing bad bytes in Intel Hex objects.
Gnu Binutils
9.1
CVSSv3
CVE-2017-7226
The pe_ILF_object_p function in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to a heap-based buffer over-read of size 4049 because it uses the strlen function instead of strnlen, leading to program crashes in several ut...
Gnu Binutils 2.28
9.1
CVSSv3
CVE-2017-6969
readelf in GNU Binutils 2.28 is vulnerable to a heap-based buffer over-read while processing corrupt RL78 binaries. The vulnerability can trigger program crashes. It may lead to an information leak as well.
Gnu Binutils 2.28
8.8
CVSSv3
CVE-2020-19726
An issue exists in binutils libbfd.c 2.36 relating to the auxiliary symbol data allows malicious users to read or write to system memory or cause a denial of service.
Gnu Binutils 2.36
7.8
CVSSv3
CVE-2022-47695
An issue exists Binutils objdump prior to 2.39.3 allows malicious users to cause a denial of service or other unspecified impacts via function bfd_mach_o_get_synthetic_symtab in match-o.c.
Gnu Binutils
1 Github repository
7.8
CVSSv3
CVE-2022-45703
Heap buffer overflow vulnerability in binutils readelf prior to 2.40 via function display_debug_section in file readelf.c.
Gnu Binutils
7.8
CVSSv3
CVE-2022-44840
Heap buffer overflow vulnerability in binutils readelf prior to 2.40 via function find_section_in_set in file readelf.c.
Gnu Binutils
7.8
CVSSv3
CVE-2022-47673
An issue exists in Binutils addr2line prior to 2.39.3, function parse_module contains multiple out of bound reads which may cause a denial of service or other unspecified impacts.
Gnu Binutils
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7028
memory leak
log injection
CVE-2024-3400
CVE-2022-48695
CVE-2022-48675
CVE-2024-34487
CVE-2024-33792
spoof
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »