CVE-2005-4807: Buffer Overflow
Published Dec 31, 2005
·Updated
Stack-based buffer overflow in the asbad function in messages.c in the GNU as (gas) assembler in Free Software Foundation GNU Binutils before 20050721 allows attackers to execute arbitrary code via a .c file with crafted inline assembly code.
Affected Software
3 affected components
GNU binutils<2.17
Canonical Ubuntu Linux=5.04
Canonical Ubuntu Linux=5.10
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Dec 31, 2005
CVE Published
05:00 AM
Aug 18, 2006
CVE Published
via MITRE·11:55 PM
Data Sourced
via MITRE·11:55 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-4807?
CVE-2005-4807 has a high severity rating due to its potential for arbitrary code execution.
2
How do I fix CVE-2005-4807?
To fix CVE-2005-4807, update your GNU Binutils to a version later than 2.17.
3
Which versions are affected by CVE-2005-4807?
CVE-2005-4807 affects GNU Binutils before version 2.17 as well as Ubuntu Linux versions 5.04 and 5.10.
4
What type of vulnerability is CVE-2005-4807?
CVE-2005-4807 is a stack-based buffer overflow vulnerability.
5
Who can exploit CVE-2005-4807?
Any attacker with the ability to provide a crafted .c file can exploit CVE-2005-4807.