Lucene search

K
redhatcveRedhat.comRH:CVE-2018-12886
HistoryMar 31, 2020 - 8:06 a.m.

CVE-2018-12886

2020-03-3108:06:50
redhat.com
access.redhat.com
15

0.003 Low

EPSS

Percentile

69.3%

stack_protect_prologue in cfgexpand.c and stack_protect_epilogue in function.c in GNU Compiler Collection (GCC) 4.1 through 8 (under certain circumstances) generate instruction sequences when targeting ARM targets that spill the address of the stack protector guard, which allows an attacker to bypass the protection of -fstack-protector, -fstack-protector-all, -fstack-protector-strong, and -fstack-protector-explicit against stack overflow by controlling what the stack canary is compared against.

0.003 Low

EPSS

Percentile

69.3%