CVE Database
/

CVE-2005-1704

Back to search

CVE-2005-1704

Published: May 24, 2005

Modified: Aug 7, 2024

PUBLISHED

Description

Integer overflow in the Binary File Descriptor (BFD) library for gdb before 6.3, binutils, elfutils, and possibly other packages, allows user-assisted attackers to execute arbitrary code via a crafted object file that specifies a large number of section headers, leading to a heap-based buffer overflow.

VendorProductVersions

n/a

n/a

affected
n/a

References

13697
vdb-entry
x_refsource_BID
17072
third-party-advisory
x_refsource_SECUNIA
21122
third-party-advisory
x_refsource_SECUNIA
2005-0025
vendor-advisory
x_refsource_TRUSTIX
RHSA-2006:0368
vendor-advisory
x_refsource_REDHAT
18506
third-party-advisory
x_refsource_SECUNIA
CLA-2006:1060
vendor-advisory
x_refsource_CONECTIVA
RHSA-2005:709
vendor-advisory
x_refsource_REDHAT
ADV-2007-1267
vdb-entry
x_refsource_VUPEN
21262
third-party-advisory
x_refsource_SECUNIA
RHSA-2005:673
vendor-advisory
x_refsource_REDHAT
MDKSA-2005:215
vendor-advisory
x_refsource_MANDRAKE
17001
third-party-advisory
x_refsource_SECUNIA
RHSA-2006:0354
vendor-advisory
x_refsource_REDHAT
RHSA-2005:801
vendor-advisory
x_refsource_REDHAT
RHSA-2005:763
vendor-advisory
x_refsource_REDHAT
24788
third-party-advisory
x_refsource_SECUNIA
USN-136-1
vendor-advisory
x_refsource_UBUNTU
GLSA-200505-15
vendor-advisory
x_refsource_GENTOO
GLSA-200506-01
vendor-advisory
x_refsource_GENTOO
oval:org.mitre.oval:def:9071
vdb-entry
signature
x_refsource_OVAL
MDKSA-2005:095
vendor-advisory
x_refsource_MANDRAKE
15527
third-party-advisory
x_refsource_SECUNIA
17257
third-party-advisory
x_refsource_SECUNIA
17135
third-party-advisory
x_refsource_SECUNIA
17356
third-party-advisory
x_refsource_SECUNIA
1016544
vdb-entry
x_refsource_SECTRACK
17718
third-party-advisory
x_refsource_SECUNIA
16757
vdb-entry
x_refsource_OSVDB
21717
third-party-advisory
x_refsource_SECUNIA
RHSA-2005:659
vendor-advisory
x_refsource_REDHAT

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now