Search

Found 247 results in 61ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-3832 low 3.7 3.7 FIX debian debian rhel gnuredhat 1mo ago RHSA-2026:20612: gnutls security update (Important)
CVE-2026-3833 medium 6.5 6.5 FIX debian debian sles rhel gnuredhat 1mo ago RHSA-2026:20612: gnutls security update (Important)
CVE-2026-1858 medium 4.8 4.8 slesdebian debian gnu 1mo ago wget2 accepts a server certificate with incorrect Key Usage (KU) or Extended Key Usage (EKU). If the attackers compromise a certificate (with the associated private key) issued for a different purpos…
CVE-2026-6238 medium 6.5 6.5 debian debian sles gnu 1mo ago The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.2 and newer fail to validate the RDATA content against the RDATA length in a DNS response when processing…
CVE-2026-6845 medium 5.0 5.0 debian debian sles rhel gnuredhat 1mo ago A flaw was found in binutils, specifically within the `readelf` utility. This vulnerability allows a local attacker to cause a Denial of Service (DoS) by tricking a user into processing a specially c…
CVE-2026-6844 medium 5.5 5.5 debian debian sles rhel gnuredhat 1mo ago A flaw was found in the `readelf` utility of the binutils package. A local attacker could exploit two Denial of Service (DoS) vulnerabilities by providing a specially crafted Executable and Linkable …
CVE-2026-6843 medium 5.5 5.5 FIX debian debian rhel gnuredhat 1mo ago A flaw was found in nano. A local user could exploit a format string vulnerability in the `statusline()` function. By creating a directory with a name containing `printf` specifiers, the application …
CVE-2026-32772 medium 4.7 4.7 FIX debian debian gnu 3mo ago telnet in GNU inetutils through 2.7 allows servers to read arbitrary environment variables from clients via NEW_ENVIRON SEND USERVAR.
CVE-2026-32746 critical 9.8 10.0 EXPFIX debian debian sles gnu 3mo ago telnetd in GNU inetutils through 2.7 allows an out-of-bounds write in the LINEMODE SLC (Set Local Characters) suboption handler because add_slc does not check whether the buffer is full.
CVE-2025-61154 medium 6.5 6.5 gnu 3mo ago Heap buffer overflow vulnerability in LibreDWG versions v0.13.3.7571 up to v0.13.3.7835 allows a crafted DWG file to cause a Denial of Service (DoS) via the function decompress_R2004_section at decod…
CVE-2025-11840 medium 5.5 5.5 FIX debian debian sles gnu 8mo ago A weakness has been identified in GNU Binutils 2.45. The affected element is the function vfinfo of the file ldmisc.c. Executing a manipulation can lead to out-of-bounds read. The attack can only be …
CVE-2025-11839 medium 5.5 5.5 FIX debian debian sles gnu 8mo ago A security flaw has been discovered in GNU Binutils 2.45. Impacted is the function tg_tag_type of the file prdbg.c. Performing a manipulation results in unchecked return value. The attack needs to be…
CVE-2025-11495 medium 5.5 5.5 FIX debian debian sles gnu 8mo ago A vulnerability was determined in GNU Binutils 2.45. The affected element is the function elf_x86_64_relocate_section of the file elf64-x86-64.c of the component Linker. This manipulation causes heap…
CVE-2025-11494 medium 5.5 5.5 FIX debian debian sles gnu 8mo ago A vulnerability was found in GNU Binutils 2.45. Impacted is the function _bfd_x86_elf_late_size_sections of the file bfd/elfxx-x86.c of the component Linker. The manipulation results in out-of-bounds…
CVE-2025-11414 medium 5.5 5.5 FIX debian debian sles gnu 8mo ago A vulnerability was determined in GNU Binutils 2.45. Affected by this vulnerability is the function get_link_hash_entry of the file bfd/elflink.c of the component Linker. This manipulation causes out…
CVE-2025-11413 medium 5.5 5.5 FIX debian debian sles gnu 8mo ago A vulnerability was found in GNU Binutils 2.45. Affected is the function elf_link_add_object_symbols of the file bfd/elflink.c of the component Linker. The manipulation results in out-of-bounds read.…
CVE-2025-11412 medium 5.5 5.5 FIX debian debian sles gnu 8mo ago A vulnerability has been found in GNU Binutils 2.45. This impacts the function bfd_elf_gc_record_vtentry of the file bfd/elflink.c of the component Linker. The manipulation leads to out-of-bounds rea…
CVE-2025-11081 medium 5.5 5.5 FIX debian debian sles gnu 8mo ago A vulnerability was detected in GNU Binutils 2.45. This issue affects the function dump_dwarf_section of the file binutils/objdump.c. Performing manipulation results in out-of-bounds read. The attack…
CVE-2025-32989 medium 5.3 5.3 FIX rheldebian debian sles gnuredhat 9mo ago Moderate: gnutls security, bug fix, and enhancement update
CVE-2025-8746 medium 5.5 5.5 debian debian sles gnu 10mo ago A vulnerability, which was classified as problematic, was found in GNU libopts up to 27.6. Affected is the function __strstr_sse2. The manipulation leads to memory corruption. Local access is require…
CVE-2025-8225 low 3.3 3.3 FIX debian debian sles gnu 10mo ago A vulnerability was found in GNU Binutils 2.44 and classified as problematic. This issue affects the function process_debug_info of the file binutils/dwarf.c of the component DWARF Section Handler. T…
CVE-2025-8224 medium 5.5 5.5 FIX debian debian sles gnu 10mo ago A vulnerability has been found in GNU Binutils 2.44 and classified as problematic. This vulnerability affects the function bfd_elf_get_str_section of the file bfd/elf.c of the component BFD Library. …
CVE-2025-3198 medium 5.5 5.5 FIX debian debian sles gnu 1y ago A vulnerability has been found in GNU Binutils 2.43/2.44 and classified as problematic. Affected by this vulnerability is the function display_info of the file binutils/bucomm.c of the component objd…
CVE-2024-33600 medium 5.9 5.9 FIX rhel rockydebian debian gnunetapp 2y ago RHSA-2024:3344: glibc security update (Important)
CVE-2023-4806 medium 5.9 5.9 FIX rhel rocky sles gnuredhat 2y ago RHSA-2023:5455: glibc security update (Important)
CVE-2023-6780 medium 5.3 5.3 FIX debian debian slesfedora fedora gnu 2y ago An integer overflow was found in the __vsyslog_internal function of the glibc library. This function is called by the syslog and vsyslog functions. This issue occurs when these functions are called w…
CVE-2023-4527 medium 6.5 6.5 FIX rhel rocky sles gnuredhat 3y ago RHSA-2023:5455: glibc security update (Important)
CVE-2017-17440 medium 6.5 6.5 FIX arch archdebian debian gnu 9y ago GNU Libextractor 1.6 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted GIF, IT (Impulse Tracker), NSFE, S3M (Scream Tracker 3), SID, …
CVE-2017-17123 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago The coff_slurp_reloc_table function in coffcode.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, allows remote attackers to cause a denial of service…
CVE-2017-17080 medium 5.5 5.5 FIX debian debian gnu 9y ago elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, does not validate sizes of core notes, which allows remote attackers to cause a denial of servic…
CVE-2017-1000383 medium 5.5 5.5 slesarch arch gnu 9y ago GNU Emacs version 25.3.1 (and other versions most likely) ignores umask when creating a backup save file ("[ORIGINAL_FILENAME]~") resulting in files that may be world readable or otherwise accessible…
CVE-2017-15939 medium 5.5 5.5 FIX debian debian gnu 9y ago dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, mishandles NULL files in a .debug_line file table, which allows remote attackers to cause a den…
CVE-2017-15922 medium 5.5 5.5 FIX arch archdebian debian gnu 9y ago In GNU Libextractor 1.4, there is an out-of-bounds read in the EXTRACTOR_dvi_extract_method function in plugins/dvi_extractor.c.
CVE-2017-15804 critical 9.8 9.8 FIX slesdebian debian gnu 9y ago The glob function in glob.c in the GNU C Library (aka glibc or libc6) before 2.27 contains a buffer overflow during unescaping of user names with the ~ operator.
CVE-2017-15671 medium 5.9 5.9 FIX arch arch slesdebian debian gnu 9y ago The glob function in glob.c in the GNU C Library (aka glibc or libc6) before 2.27, when invoked with GLOB_TILDE, could skip freeing allocated memory when processing the ~ operator with a long user na…
CVE-2017-15670 critical 9.8 9.8 FIX arch arch slesdebian debian gnu 9y ago The GNU C Library (aka glibc or libc6) before 2.27 contains an off-by-one error leading to a heap-based buffer overflow in the glob function in glob.c, related to the processing of home directories u…
CVE-2011-5320 medium 6.2 6.2 FIX debian debian gnu 9y ago scanf and related functions in glibc before 2.15 allow local users to cause a denial of service (segmentation fault) via a large string of 0s.
CVE-2017-15266 medium 5.5 5.5 FIX debian debian gnu 9y ago In GNU Libextractor 1.4, there is a Divide-By-Zero in EXTRACTOR_wav_extract_method in wav_extractor.c via a zero sample rate.
CVE-2017-15225 medium 5.5 5.5 FIX debian debian sles gnu 9y ago _bfd_dwarf2_cleanup_debug_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (memory …
CVE-2017-15025 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (divide-by-zero error …
CVE-2017-15024 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago find_abstract_instance_name in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (infinite r…
CVE-2017-15023 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago read_formatted_entries in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, does not properly validate the format count, which allows remote atta…
CVE-2017-15022 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, does not validate the DW_AT_name data type, which allows remote attackers to cause a denial of …
CVE-2017-15021 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago bfd_get_debug_link_info_1 in opncls.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (heap-based b…
CVE-2017-14974 medium 5.5 5.5 FIX debian debian sles gnu 9y ago The *_get_synthetic_symtab functions in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, mishandle the failure of a certain canonicalization step, which all…
CVE-2017-14940 medium 5.5 5.5 FIX debian debian sles gnu 9y ago scan_unit_for_symbols in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (NULL pointer der…
CVE-2017-14939 medium 5.5 6.5 EXPFIX debian debian sles gnu 9y ago decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, mishandles a length calculation, which allows remote attackers to cause a d…
CVE-2017-14938 medium 5.5 5.5 FIX debian debian sles gnu 9y ago _bfd_elf_slurp_version_tables in elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (excessive m…
CVE-2017-14934 medium 5.5 5.5 FIX debian debian sles gnu 9y ago process_debug_info in dwarf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (infinite loop) via a…
CVE-2017-14933 medium 5.5 5.5 FIX debian debian sles gnu 9y ago read_formatted_entries in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (infinite loop) …
CVE-2017-14932 medium 5.5 5.5 FIX debian debian sles gnu 9y ago decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (infinite loop) via a …
CVE-2017-14930 medium 5.5 5.5 FIX debian debian sles gnu 9y ago Memory leak in decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (memory…
CVE-2015-1865 medium 5.1 5.1 FIX debian debian gnu 9y ago fts.c in coreutils 8.4 allows local users to delete arbitrary files.
CVE-2017-14529 medium 5.5 5.5 FIX debian debian sles gnu 9y ago The pe_print_idata function in peXXigen.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, mishandles HintName vector entries, which allows remote attack…
CVE-2017-12133 medium 5.9 5.9 FIX arch arch slesdebian debian gnu 9y ago Use-after-free vulnerability in the clntudp_call function in sunrpc/clnt_udp.c in the GNU C Library (aka glibc or libc6) before 2.26 allows remote attackers to have unspecified impact via vectors rel…
CVE-2017-14130 medium 5.5 5.5 FIX debian debian sles gnu 9y ago The _bfd_elf_parse_attributes function in elf-attrs.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of servi…
CVE-2017-14129 medium 5.5 5.5 FIX debian debian sles gnu 9y ago The read_section function in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (parse_comp_u…
CVE-2017-14128 medium 5.5 5.5 FIX debian debian sles gnu 9y ago The decode_line_info function in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (read_1_b…
CVE-2017-14062 critical 9.8 9.8 FIX slesdebian debian gnu 9y ago Integer overflow in the decode_digit function in puny_decode.c in Libidn2 before 2.0.4 allows remote attackers to cause a denial of service or possibly have unspecified other impact.
CVE-2017-14061 critical 9.8 9.8 FIX debian debian gnu 9y ago Integer overflow in the _isBidi function in bidi.c in Libidn2 before 2.0.4 allows remote attackers to cause a denial of service or possibly have unspecified other impact.
CVE-2017-13757 medium 5.5 5.5 FIX debian debian sles gnu 9y ago The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, does not validate the PLT section size, which allows remote attackers to cause a denial of service (heap-ba…
CVE-2017-13734 medium 6.5 6.5 FIX slesdebian debian gnu 9y ago There is an illegal address access in the _nc_safe_strcat function in strings.c in ncurses 6.0 that will lead to a remote denial of service attack.
CVE-2017-13733 medium 6.5 6.5 FIX slesdebian debian gnu 9y ago There is an illegal address access in the fmt_entry function in progs/dump_entry.c in ncurses 6.0 that might lead to a remote denial of service attack.
CVE-2017-13732 medium 6.5 6.5 FIX slesdebian debian gnu 9y ago There is an illegal address access in the function dump_uses() in progs/dump_entry.c in ncurses 6.0 that might lead to a remote denial of service attack.
CVE-2017-13731 medium 6.5 6.5 FIX slesdebian debian gnu 9y ago There is an illegal address access in the function postprocess_termcap() in parse_entry.c in ncurses 6.0 that will lead to a remote denial of service attack.
CVE-2017-13730 medium 6.5 6.5 FIX slesdebian debian gnu 9y ago There is an illegal address access in the function _nc_read_entry_source() in progs/tic.c in ncurses 6.0 that might lead to a remote denial of service attack.
CVE-2017-13729 medium 6.5 6.5 FIX slesdebian debian gnu 9y ago There is an illegal address access in the _nc_save_str function in alloc_entry.c in ncurses 6.0. It will lead to a remote denial of service attack.
CVE-2017-13716 medium 5.5 5.5 debian debian sles gnu 9y ago The C++ symbol demangler routine in cplus-dem.c in libiberty, as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (excessive memory allocation and application cr…
CVE-2014-9637 medium 5.5 5.5 FIX fedora fedoraubuntu ubuntudebian debian gnu 9y ago GNU patch 2.7.2 and earlier allows remote attackers to cause a denial of service (memory consumption and segmentation fault) via a crafted diff file.
CVE-2017-12967 medium 6.5 6.5 FIX debian debian sles gnu 9y ago The getsym function in tekhex.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (stack-based buffer…
CVE-2017-12132 medium 5.9 5.9 FIX arch archdebian debian gnu 9y ago The DNS stub resolver in the GNU C Library (aka glibc or libc6) before version 2.26, when EDNS support is enabled, will solicit large UDP responses from name servers, potentially simplifying off-path…
CVE-2017-11671 medium 4.0 4.0 sles gnu 9y ago Under certain circumstances, the ix86_expand_builtin function in i386.c in GNU Compiler Collection (GCC) version 4.6, 4.7, 4.8, 4.9, 5 before 5.5, and 6 before 6.4 will generate instruction sequences…
CVE-2017-10792 medium 6.5 6.5 FIX debian debian gnu 9y ago There is a NULL Pointer Dereference in the function ll_insert() of the libpspp library in GNU PSPP before 0.11.0. For example, a crash was observed within the library code when attempting to convert …
CVE-2017-10791 medium 6.5 6.5 FIX debian debian gnu 9y ago There is an Integer overflow in the hash_int function of the libpspp library in GNU PSPP before 0.11.0. For example, a crash was observed within the library code when attempting to convert invalid SP…
CVE-2017-10685 critical 9.8 9.8 FIX slesdebian debian gnu 9y ago In ncurses 6.0, there is a format string vulnerability in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.
CVE-2017-10684 critical 9.8 9.8 FIX slesdebian debian gnu 9y ago In ncurses 6.0, there is a stack-based buffer overflow in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.
CVE-2017-9955 medium 5.5 5.5 FIX debian debian sles gnu 9y ago The get_build_id function in opncls.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, allows remote attackers to cause a denial of service (heap-based b…
CVE-2017-9954 medium 5.5 5.5 FIX debian debian gnu 9y ago The getvalue function in tekhex.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, allows remote attackers to cause a denial of service (stack-based buff…
CVE-2017-9778 medium 5.5 5.5 FIX slesdebian debian gnu 9y ago GNU Debugger (GDB) 8.0 and earlier fails to detect a negative length field in a DWARF section. A malformed section in an ELF binary or a core file can cause GDB to repeatedly allocate memory until a …
CVE-2014-9984 critical 9.8 9.8 FIX slesdebian debian gnu 9y ago nscd in the GNU C Library (aka glibc or libc6) before version 2.20 does not correctly compute the size of an internal buffer when processing netgroup requests, possibly leading to an nscd daemon cras…
CVE-2017-9044 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago The print_symbol_for_build_attribute function in readelf.c in GNU Binutils 2017-04-12 allows remote attackers to cause a denial of service (invalid read and SEGV) via a crafted ELF file.
CVE-2017-9041 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago GNU Binutils 2.28 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file, related to MIPS GOT mishandling in the process_mips_…
CVE-2017-9040 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago GNU Binutils 2017-04-03 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash), related to the process_mips_specific function in readelf.c, via a crafte…
CVE-2017-9039 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago GNU Binutils 2.28 allows remote attackers to cause a denial of service (memory consumption) via a crafted ELF file with many program headers, related to the get_program_headers function in readelf.c.
CVE-2017-9038 medium 5.5 5.5 FIX debian debianarch arch sles gnu 9y ago GNU Binutils 2.28 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file, related to the byte_get_little_endian function in el…
CVE-2017-8421 medium 5.5 5.5 FIX debian debian sles gnu 9y ago The function coff_set_alignment_hook in coffcode.h in Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has a memory leak vulnerability which can cause memory ex…
CVE-2016-10324 critical 9.8 9.8 FIX slesdebian debian gnu 9y ago In libosip2 in GNU oSIP 4.1.0, a malformed SIP message can lead to a heap buffer overflow in the osip_clrncpy() function defined in osipparser2/osip_port.c.
CVE-2017-7614 critical 9.8 9.8 FIX debian debian sles gnu 9y ago elflink.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has a "member access within null pointer" undefined behavior issue, which might allow remote a…
CVE-2017-7299 medium 5.5 5.5 FIX debian debian sles gnu 9y ago The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has an invalid read (of size 8) because the code to emit relocs (bfd_elf_final_link function in bfd/elflink…
CVE-2017-5337 critical 9.8 9.8 FIX slesdebian debiansuse suse gnu 9y ago Multiple heap-based buffer overflows in the read_attribute function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allow remote attackers to have unspecified impact via a crafted OpenPGP certificate.
CVE-2017-5336 critical 9.8 9.8 FIX slesdebian debiansuse suse gnu 9y ago Stack-based buffer overflow in the cdk_pk_get_keyid function in lib/opencdk/pubkey.c in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote attackers to have unspecified impact via a crafted Op…
CVE-2017-5334 critical 9.8 9.8 FIX slesdebian debiansuse suse gnu 9y ago Double free vulnerability in the gnutls_x509_ext_import_proxy function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote attackers to have unspecified impact via crafted policy language in…
CVE-2017-7226 critical 9.1 9.1 FIX debian debianarch arch gnu 9y ago The pe_ILF_object_p function in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to a heap-based buffer over-read of size 4049 because it uses…
CVE-2017-7224 medium 5.5 5.5 FIX debian debianarch arch gnu 9y ago The find_nearest_line function in objdump in GNU Binutils 2.28 is vulnerable to an invalid write (of size 1) while disassembling a corrupt binary that contains an empty function name, leading to a pr…
CVE-2017-7210 medium 5.5 5.5 FIX debian debianarch arch gnu 9y ago objdump in GNU Binutils 2.28 is vulnerable to multiple heap-based buffer over-reads (of size 1 and size 8) while handling corrupt STABS enum type strings in a crafted object file, leading to program …
CVE-2017-7209 medium 5.5 5.5 FIX debian debianarch arch gnu 9y ago The dump_section_as_bytes function in readelf in GNU Binutils 2.28 accesses a NULL pointer while reading section contents in a corrupt binary, leading to a program crash.
CVE-2014-9939 critical 9.8 9.8 FIX debian debian gnu 9y ago ihex.c in GNU Binutils before 2.26 contains a stack buffer overflow when printing bad bytes in Intel Hex objects.
CVE-2015-8985 medium 5.9 5.9 FIX slesdebian debian gnu 9y ago The pop_fail_stack function in the GNU C Library (aka glibc or libc6) allows context-dependent attackers to cause a denial of service (assertion failure and application crash) via vectors related to …
CVE-2015-8984 medium 5.9 5.9 FIX debian debian gnu 9y ago The fnmatch function in the GNU C Library (aka glibc or libc6) before 2.22 might allow context-dependent attackers to cause a denial of service (application crash) via a malformed pattern, which trig…
CVE-2017-6969 critical 9.1 9.1 FIX debian debianarch arch gnu 9y ago readelf in GNU Binutils 2.28 is vulnerable to a heap-based buffer over-read while processing corrupt RL78 binaries. The vulnerability can trigger program crashes. It may lead to an information leak a…