7.8
CVSSv3

CVE-2018-6323

Published: 26/01/2018 Updated: 31/10/2019
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

The elf_object_p function in elfcode.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, has an unsigned integer overflow because bfd_size_type multiplication is not used. A crafted ELF file allows remote malicious users to cause a denial of service (application crash) or possibly have unspecified other impact.

Vulnerable Product Search on Vulmon Subscribe to Product

gnu binutils 2.29.1

Vendor Advisories

An integer wraparound has been discovered in the Binary File Descriptor (BFD) library distributed in GNU Binutils up to version 230 An attacker could cause a crash by providing an ELF file with corrupted DWARF debug information(CVE-2018-7568) The ignore_section_sym function in elfc in the Binary File Descriptor (BFD) library (aka libbfd), as di ...
The elf_object_p function in elfcodeh in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2291, has an unsigned integer overflow because bfd_size_type multiplication is not used A crafted ELF file allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impa ...

Exploits

# Exploit Title: Objdump - Integer Overflow Crash POC # Date: 12022018 # Exploit Author: r4xis # Tested Version: 2261 # Vuln Version: <2291 # CVE: cve-2018-6323 # Tested on: Ubuntu 1604 32-bit # Vulnerability Details: # wwwcvedetailscom/cve/CVE-2018-6323/ # sourcewareorg/bugzilla/show_bugcgi?id=22746 import os hel ...
GNU binutils version 2261 suffers from an integer overflow vulnerability ...