6.8
CVSSv2

CVE-2018-19931

Published: 07/12/2018 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

An issue exists in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils up to and including 2.31. There is a heap-based buffer overflow in bfd_elf32_swap_phdr_in in elfcode.h because the number of program headers is not restricted.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gnu binutils

netapp vasa provider

canonical ubuntu linux 18.04

Vendor Advisories

Several security issues were fixed in GNU binutils ...
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils through 231 There is a heap-based buffer overflow in bfd_elf32_swap_phdr_in in elfcodeh because the number of program headers is not restricted ...
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils through 231 There is a heap-based buffer overflow in bfd_elf32_swap_phdr_in in elfcodeh because the number of program headers is not restricted ...