5
CVSSv2

CVE-2018-12697

Published: 23/06/2018 Updated: 03/08/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 446
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

A NULL pointer dereference (aka SEGV on unknown address 0x000000000000) exists in work_stuff_copy_to_from in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30. This can occur during execution of objdump.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gnu binutils 2.30

canonical ubuntu linux 16.04.4

Vendor Advisories

Synopsis Moderate: binutils security and bug fix update Type/Severity Security Advisory: Moderate Topic An update for binutils is now available for Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Scoring System (CVSS) ...
Several security issues were fixed in libiberty ...
Several security issues were fixed in GNU binutils ...
An issue was discovered in arm_pt in cplus-demc in GNU libiberty, as distributed in GNU Binutils 230 Stack Exhaustion occurs in the C++ demangling functions provided by libiberty, and there are recursive stack frames: demangle_arm_hp_template, demangle_class_name, demangle_fund_type, do_type, do_arg, demangle_args, and demangle_nested_args This ...