CVE Database
/

CVE-2018-6323

Back to search

CVE-2018-6323

Published: Jan 26, 2018

Modified: Aug 5, 2024

PUBLISHED

Description

The elf_object_p function in elfcode.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, has an unsigned integer overflow because bfd_size_type multiplication is not used. A crafted ELF file allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.

VendorProductVersions

n/a

n/a

affected
n/a

References

102821
vdb-entry
x_refsource_BID
44035
exploit
x_refsource_EXPLOIT-DB
openSUSE-SU-2019:2415
vendor-advisory
x_refsource_SUSE
openSUSE-SU-2019:2432
vendor-advisory
x_refsource_SUSE

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now