First published: Thu Oct 18 2018(Updated: )
An issue was discovered in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31. Stack Exhaustion occurs in the C++ demangling functions provided by libiberty, and there is a stack consumption problem caused by recursive stack frames: cplus_demangle_type, d_bare_function_type, d_function_type.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GNU Binutils | =2.31 | |
debian/binutils | 2.35.2-2 2.40-2 2.43.1-5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-18484 is a vulnerability in GNU libiberty, as distributed in GNU Binutils 2.31, that causes stack exhaustion in the C++ demangling functions.
If you are using GNU libiberty, as distributed in GNU Binutils 2.31, your system is vulnerable to stack exhaustion.
To fix CVE-2018-18484, you should update your Binutils package to version 2.35.2-2 or higher.
There are no known workarounds for CVE-2018-18484.
You can find more information about CVE-2018-18484 at the following references: [link1], [link2], [link3].