Search CVE reports


Toggle filters

141 – 150 of 357 results


CVE-2018-17985

Low priority

Some fixes available 4 of 9

An issue was discovered in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31. There is a stack consumption problem caused by the cplus_demangle_type function making recursive calls to itself in certain scenarios...

2 affected packages

binutils, libiberty

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
binutils Not affected Not affected Not affected Fixed
libiberty Not affected Not affected Not affected Fixed
Show less packages

CVE-2018-17794

Low priority

Some fixes available 4 of 9

An issue was discovered in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31. There is a NULL pointer dereference in work_stuff_copy_to_from when called from iterate_demangle_function.

2 affected packages

binutils, libiberty

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
binutils Not affected Not affected Not affected Fixed
libiberty Not affected Not affected Not affected Fixed
Show less packages

CVE-2018-17360

Low priority

Some fixes available 2 of 4

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31. a heap-based buffer over-read in bfd_getl32 in libbfd.c allows an attacker to cause a denial of service through...

1 affected package

binutils

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
binutils Not affected Not affected Not affected Fixed
Show less packages

CVE-2018-17359

Low priority

Some fixes available 2 of 4

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31. An invalid memory access exists in bfd_zalloc in opncls.c. Attackers could leverage this vulnerability to cause...

1 affected package

binutils

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
binutils Not affected Not affected Not affected Fixed
Show less packages

CVE-2018-17358

Low priority

Some fixes available 2 of 4

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31. An invalid memory access exists in _bfd_stab_section_find_nearest_line in syms.c. Attackers could leverage this...

1 affected package

binutils

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
binutils Not affected Not affected Not affected Fixed
Show less packages

CVE-2018-10846

Medium priority

Some fixes available 2 of 3

A cache-based side channel in GnuTLS implementation that leads to plain text recovery in cross-VM attack setting was found. An attacker could use a combination of "Just in Time" Prime+probe attack in combination with Lucky-13...

2 affected packages

gnutls26, gnutls28

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnutls26 Not in release Not in release Not in release Not in release
gnutls28 Not affected Not affected Not affected Fixed
Show less packages

CVE-2018-10845

Medium priority

Some fixes available 2 of 3

It was found that the GnuTLS implementation of HMAC-SHA-384 was vulnerable to a Lucky thirteen style attack. Remote attackers could use this flaw to conduct distinguishing attacks and plain text recovery attacks via statistical...

2 affected packages

gnutls26, gnutls28

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnutls26 Not in release Not in release Not in release Not in release
gnutls28 Not affected Not affected Not affected Fixed
Show less packages

CVE-2018-10844

Medium priority

Some fixes available 2 of 3

It was found that the GnuTLS implementation of HMAC-SHA-256 was vulnerable to a Lucky thirteen style attack. Remote attackers could use this flaw to conduct distinguishing attacks and plaintext-recovery attacks via statistical...

2 affected packages

gnutls28, gnutls26

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnutls28 Not affected Not affected Not affected Fixed
gnutls26 Not in release Not in release Not in release Not in release
Show less packages

CVE-2018-13033

Low priority

Some fixes available 2 of 6

The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to cause a denial of service (excessive memory allocation and application crash) via a crafted ELF file, as...

1 affected package

binutils

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
binutils Not affected Not affected Not affected Fixed
Show less packages

CVE-2018-12934

Low priority

Some fixes available 4 of 10

remember_Ktype in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30, allows attackers to trigger excessive memory consumption (aka OOM). This can occur during execution of cxxfilt.

2 affected packages

binutils, libiberty

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
binutils Not affected Not affected Not affected Fixed
libiberty Not affected Not affected Not affected Fixed
Show less packages