Lucene search

K
archlinuxArch LinuxASA-201411-18
HistoryNov 19, 2014 - 12:00 a.m.

arm-none-eabi-binutils: multiple issues

2014-11-1900:00:00
Arch Linux
lists.archlinux.org
22

0.049 Low

EPSS

Percentile

92.8%

  • CVE-2014-8484 (invalid read)
    Invalid read flaw leads to denial of service while parsing specially
    crafted files in programs using libbfd.

  • CVE-2014-8485 (out-of-bounds write)
    Lack of range checking leading to controlled write in
    _bfd_elf_setup_sections() which results in denial of service or possible
    code execution in programs using libbfd.

  • CVE-2014-8501 (out-of-bounds write)
    Out-of-bounds write when parsing specially crafted PE executable leads
    to denial of service in "strings", "nm" and "objdump".

  • CVE-2014-8502 (heap overflow)
    Heap buffer overflow when parsing specially crafted PE executable leads
    to denial of service in "objdump".

  • CVE-2014-8503 (stack overflow)
    Stack overflow in "objdump" when parsing specially crafted ihex files
    leads to denial of service or code execution.

  • CVE-2014-8504 (stack overflow)
    Stack overflow in the SREC parser leads to denial of service or code
    execution when parsing specially crafted files.

  • CVE-2014-8737 (directory traversal)
    Directory traversal vulnerability allowing arbitrary file deletion and
    creation.

  • CVE-2014-8738 (out-of-bounds write)
    Out-of-bounds memory write while processing a crafted "ar" archive leads
    to denial of service in "objdump".

OSVersionArchitecturePackageVersionFilename
anyanyanyarm-none-eabi-binutils< 2.24-3UNKNOWN