Lucene search

K
osvGoogleOSV:CVE-2018-20002
HistoryDec 10, 2018 - 2:29 a.m.

CVE-2018-20002

2018-12-1002:29:00
Google
osv.dev
5

6.3 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

54.8%

The _bfd_generic_read_minisymbols function in syms.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31, has a memory leak via a crafted ELF file, leading to a denial of service (memory consumption), as demonstrated by nm.