CVE-2018-20671: Integer Overflow
Last updated 24 July 2024
Other sources
loadspecificdebugsection in objdump.c in GNU Binutils through 2.31.1 contains an integer overflow vulnerability that can trigger a heap-based buffer overflow via a crafted section size.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2018-20671.
What is the title of the vulnerability?
The title of the vulnerability is 'load_specific_debug_section in objdump.c in GNU Binutils through 2.31.1 contains an integer overflow...'
What is the description of the vulnerability?
The description of the vulnerability is that 'load_specific_debug_section in objdump.c in GNU Binutils through 2.31.1 contains an integer overflow vulnerability that can trigger a heap-based buffer overflow via a crafted section size.'
What software is affected by this vulnerability?
The software affected by this vulnerability includes binutils version 2.30-21ubuntu1~18.04.3 and binutils version 2.26.1-1ubuntu1~16.04.8+.
What is the severity level of this vulnerability?
The severity level of this vulnerability is not specified.