Back to search
CVE-2014-8485
Published: Dec 9, 2014
Modified: Aug 6, 2024
PUBLISHED
Description
The setup_group function in bfd/elf.c in libbfd in GNU binutils 2.24 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted section group headers in an ELF file.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
62241
third-party-advisory
x_refsource_SECUNIA
https://sourceware.org/bugzilla/show_bug.cgi?id=17510
x_refsource_CONFIRM
MDVSA-2015:029
vendor-advisory
x_refsource_MANDRIVA
USN-2496-1
vendor-advisory
x_refsource_UBUNTU
FEDORA-2014-14995
vendor-advisory
x_refsource_FEDORA
70741
vdb-entry
x_refsource_BID
https://bugzilla.redhat.com/show_bug.cgi?id=1157276
x_refsource_CONFIRM
[oss-security] 20141026 Re: strings / libbfd crasher
mailing-list
x_refsource_MLIST
FEDORA-2014-14963
vendor-advisory
x_refsource_FEDORA
62746
third-party-advisory
x_refsource_SECUNIA
FEDORA-2014-14838
vendor-advisory
x_refsource_FEDORA
GLSA-201612-24
vendor-advisory
x_refsource_GENTOO
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now