CVE-2018-19932
Summary
| CVE | CVE-2018-19932 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-12-07 07:29:00 UTC |
| Updated | 2023-11-07 02:55:00 UTC |
| Description | An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils through 2.31. There is an integer overflow and infinite loop caused by the IS_CONTAINED_BY_LMA macro in elf.c. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| GNU Binutils Integer Overflow and Heap Based Buffer Overflow Vulnerabilities |
BID |
www.securityfocus.com |
Third Party Advisory, VDB Entry |
| Binutils: Multiple vulnerabilities (GLSA 201908-01) — Gentoo security |
GENTOO |
security.gentoo.org |
|
| December 2018 GNU Binutils Vulnerabilities in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
Patch, Third Party Advisory |
| USN-4336-1: GNU binutils vulnerabilities | Ubuntu security notices |
UBUNTU |
usn.ubuntu.com |
|
| [security-announce] openSUSE-SU-2019:2415-1: moderate: Security update f |
SUSE |
lists.opensuse.org |
|
| sourceware.org Git - binutils-gdb.git/commit |
|
sourceware.org |
|
| [security-announce] openSUSE-SU-2019:2432-1: moderate: Security update f |
SUSE |
lists.opensuse.org |
|
| sourceware.org Git - binutils-gdb.git/commit |
MISC |
sourceware.org |
Patch |
| 23932 – integer overflow causes an endless loop |
MISC |
sourceware.org |
Exploit, Issue Tracking, Patch |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 500066 Alpine Linux Security Update for binutils
- 501178 Alpine Linux Security Update for binutils-avr
- 503745 Alpine Linux Security Update for binutils
- 710158 Gentoo Linux Binutils Multiple vulnerabilities (GLSA 201908-01)