Vulnerabilities > GNU > Binutils > High

DATE CVE VULNERABILITY TITLE RISK
2017-08-04 CVE-2017-12458 Out-of-bounds Read vulnerability in GNU Binutils
The nlm_swap_auxiliary_headers_in function in bfd/nlmcode.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap read via a crafted nlm file.
local
low complexity
gnu CWE-125
7.8
2017-08-04 CVE-2017-12457 NULL Pointer Dereference vulnerability in GNU Binutils
The bfd_make_section_with_flags function in section.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause a NULL dereference via a crafted file.
local
low complexity
gnu CWE-476
7.8
2017-08-04 CVE-2017-12456 Out-of-bounds Read vulnerability in GNU Binutils
The read_symbol_stabs_debugging_info function in rddbg.c in GNU Binutils 2.29 and earlier allows remote attackers to cause an out of bounds heap read via a crafted binary file.
local
low complexity
gnu CWE-125
7.8
2017-08-04 CVE-2017-12455 Out-of-bounds Read vulnerability in GNU Binutils
The evax_bfd_print_emh function in vms-alpha.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap read via a crafted vms alpha file.
local
low complexity
gnu CWE-125
7.8
2017-08-04 CVE-2017-12454 Out-of-bounds Read vulnerability in GNU Binutils
The _bfd_vms_slurp_egsd function in bfd/vms-alpha.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an arbitrary memory read via a crafted vms alpha file.
local
low complexity
gnu CWE-125
7.8
2017-08-04 CVE-2017-12453 Out-of-bounds Read vulnerability in GNU Binutils
The _bfd_vms_slurp_eeom function in libbfd.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap read via a crafted vms alpha file.
local
low complexity
gnu CWE-125
7.8
2017-08-04 CVE-2017-12452 Out-of-bounds Read vulnerability in GNU Binutils
The bfd_mach_o_i386_canonicalize_one_reloc function in bfd/mach-o-i386.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap read via a crafted mach-o file.
local
low complexity
gnu CWE-125
7.8
2017-08-04 CVE-2017-12451 Out-of-bounds Read vulnerability in GNU Binutils
The _bfd_xcoff_read_ar_hdr function in bfd/coff-rs6000.c and bfd/coff64-rs6000.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds stack read via a crafted COFF image file.
local
low complexity
gnu CWE-125
7.8
2017-08-04 CVE-2017-12450 Out-of-bounds Write vulnerability in GNU Binutils
The alpha_vms_object_p function in bfd/vms-alpha.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap write and possibly achieve code execution via a crafted vms alpha file.
local
low complexity
gnu CWE-787
7.8
2017-08-04 CVE-2017-12449 Out-of-bounds Read vulnerability in GNU Binutils
The _bfd_vms_save_sized_string function in vms-misc.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap read via a crafted vms file.
local
low complexity
gnu CWE-125
7.8