7.8
CVSSv3

CVE-2017-12450

Published: 04/08/2017 Updated: 07/08/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

The alpha_vms_object_p function in bfd/vms-alpha.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and previous versions, allows remote malicious users to cause an out of bounds heap write and possibly achieve code execution via a crafted vms alpha file.

Vulnerable Product Search on Vulmon Subscribe to Product

gnu binutils

Vendor Advisories

The _bfd_xcoff_read_ar_hdr function in bfd/coff-rs6000c and bfd/coff64-rs6000c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 229 and earlier, allows remote attackers to cause an out of bounds stack read via a crafted COFF image file(CVE-2017-12451) The evax_bfd_print_emh function in vms-alphac in the ...
The alpha_vms_object_p function in bfd/vms-alphac in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 229 and earlier, allows remote attackers to cause an out of bounds heap write and possibly achieve code execution via a crafted vms alpha file ...