[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249461

 
 

909

 
 

195508

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

GNU binary utilities - (bulletinapr2019)

ID: oval:org.secpod.oval:def:2104517Date: (C)2019-12-31   (M)2023-12-20
Class: PATCHFamily: unix




binutils version 2.32 and earlier contains a Integer Overflow vulnerability in objdump, bfd_get_dynamic_reloc_upper_bound,bfd_canonicalize_dynamic_reloc that can result in Integer overflow trigger heap overflow. Successful exploitation allows execution of arbitrary code.. This attack appear to be exploitable via Local. This vulnerability appears to have been fixed in after commit 3a551c7a1b80fca579461774860574eabfd7f18f.

Platform:
Sun Solaris 11
Product:
developer/gnu-binutils
developer/gnu-binutils-cross-sparc
developer/gnu-binutils-cross-i386
Reference:
bulletinapr2019
CVE-2018-1000876
CVE-2018-17358
CVE-2018-17359
CVE-2018-17360
CVE-2018-18309
CVE-2018-18605
CVE-2018-18606
CVE-2018-18607
CVE-2018-19931
CVE-2018-19932
CVE-2018-20002
CVE-2018-20623
CVE-2018-20651
CVE-2018-20671
CVE    14
CVE-2018-17360
CVE-2018-17359
CVE-2018-17358
CVE-2018-20651
...
CPE    1
cpe:/o:oracle:solaris:11

© SecPod Technologies