Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
gnu binutils 2.30 vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2018-12699
finish_stab in stabs.c in GNU Binutils 2.30 allows malicious users to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact, as demonstrated by an out-of-bounds write of 8 bytes. This can occur during execution of objdump.
Gnu Binutils 2.30
Canonical Ubuntu Linux 16.04.4
2 Github repositories
7.8
CVSSv3
CVE-2018-1000876
binutils version 2.32 and previous versions contains a Integer Overflow vulnerability in objdump, bfd_get_dynamic_reloc_upper_bound,bfd_canonicalize_dynamic_reloc that can result in Integer overflow trigger heap overflow. Successful exploitation allows execution of arbitrary code...
Gnu Binutils
Canonical Ubuntu Linux 18.04
Redhat Enterprise Linux Desktop 7.0
Redhat Enterprise Linux Workstation 7.0
Redhat Enterprise Linux Server 7.0
7.8
CVSSv3
CVE-2018-6543
In GNU Binutils 2.30, there's an integer overflow in the function load_specific_debug_section() in objdump.c, which results in `malloc()` with 0 size. A crafted ELF file allows remote malicious users to cause a denial of service (application crash) or possibly have unspecifi...
Gnu Binutils 2.30
1 Github repository
7.8
CVSSv3
CVE-2018-6323
The elf_object_p function in elfcode.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, has an unsigned integer overflow because bfd_size_type multiplication is not used. A crafted ELF file allows remote malicious users to cause a d...
Gnu Binutils 2.29.1
1 EDB exploit
7.5
CVSSv3
CVE-2018-12934
remember_Ktype in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30, allows malicious users to trigger excessive memory consumption (aka OOM). This can occur during execution of cxxfilt.
Gnu Binutils 2.30
7.5
CVSSv3
CVE-2018-12698
demangle_template in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30, allows malicious users to trigger excessive memory consumption (aka OOM) during the "Create an array for saving the template argument values" XNEWVEC call. This can occur during exec...
Gnu Binutils 2.30
Canonical Ubuntu Linux 16.04.4
7.5
CVSSv3
CVE-2018-12697
A NULL pointer dereference (aka SEGV on unknown address 0x000000000000) exists in work_stuff_copy_to_from in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30. This can occur during execution of objdump.
Gnu Binutils 2.30
Canonical Ubuntu Linux 16.04.4
6.5
CVSSv3
CVE-2018-10373
concat_filename in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote malicious users to cause a denial of service (NULL pointer dereference and application crash) via a crafted binary file, as demonstrated by nm-...
Gnu Binutils 2.30
Redhat Enterprise Linux Desktop 7.0
Redhat Enterprise Linux Workstation 7.0
Redhat Enterprise Linux Server 7.0
5.5
CVSSv3
CVE-2018-12641
An issue exists in arm_pt in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30. Stack Exhaustion occurs in the C++ demangling functions provided by libiberty, and there are recursive stack frames: demangle_arm_hp_template, demangle_class_name, demangle_fund_type, ...
Gnu Binutils 2.30
5.5
CVSSv3
CVE-2018-10372
process_cu_tu_index in dwarf.c in GNU Binutils 2.30 allows remote malicious users to cause a denial of service (heap-based buffer over-read and application crash) via a crafted binary file, as demonstrated by readelf.
Gnu Binutils 2.30
Redhat Enterprise Linux Desktop 7.0
Redhat Enterprise Linux Workstation 7.0
Redhat Enterprise Linux Server 7.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
type confusion
IMAP
CVE-2024-36103
CVE-2024-28995
CVE-2024-37325
CVE-2024-30078
CVE-2024-30082
SQL injection
CVE-2024-30052
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »