4.3
CVSSv2

CVE-2018-6759

Published: 06/02/2018 Updated: 31/10/2019
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 384
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

The bfd_get_debug_link_info_1 function in opncls.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, has an unchecked strnlen operation. Remote attackers could leverage this vulnerability to cause a denial of service (segmentation fault) via a crafted ELF file.

Vulnerable Product Search on Vulmon Subscribe to Product

gnu binutils 2.30

Vendor Advisories

The bfd_get_debug_link_info_1 function in opnclsc in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 230, has an unchecked strnlen operation Remote attackers could leverage this vulnerability to cause a denial of service (segmentation fault) via a crafted ELF file ...