Lucene search

K
cveMitreCVE-2014-8503
HistoryDec 09, 2014 - 11:59 p.m.

CVE-2014-8503

2014-12-0923:59:05
CWE-119
mitre
web.nvd.nist.gov
72
cve-2014-8503
stack-based buffer overflow
ihex_scan function
gnu binutils 2.24
denial of service

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

8.4

Confidence

High

EPSS

0.009

Percentile

82.9%

Stack-based buffer overflow in the ihex_scan function in bfd/ihex.c in GNU binutils 2.24 and earlier allows remote attackers to cause a denial of service (crash) and possibly have other unspecified impact via a crafted ihex file.

Affected configurations

Nvd
Node
fedoraprojectfedoraMatch19
OR
fedoraprojectfedoraMatch20
OR
fedoraprojectfedoraMatch21
Node
gnubinutilsRange2.24
Node
canonicalubuntu_linuxMatch10.04lts
OR
canonicalubuntu_linuxMatch12.04lts
OR
canonicalubuntu_linuxMatch14.04lts
OR
canonicalubuntu_linuxMatch14.10
VendorProductVersionCPE
fedoraprojectfedora21cpe:/o:fedoraproject:fedora:21:::
fedoraprojectfedora20cpe:/o:fedoraproject:fedora:20:::
fedoraprojectfedora19cpe:/o:fedoraproject:fedora:19:::

References

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

8.4

Confidence

High

EPSS

0.009

Percentile

82.9%