Wind River Support Network

HomeDefectsLIN9-6772
Fixed

LIN9-6772 : Security Advisory - binutils - CVE-2018-10534

Created: May 1, 2018    Updated: Feb 25, 2019
Resolved Date: Feb 20, 2019
Found In Version: 9.0.0.15
Fix Version: 9.0.0.20
Severity: Standard
Applicable for: Wind River Linux 9
Component/s: Userspace

Description

The _bfd_XX_bfd_copy_private_bfd_data_common function in peXXigen.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, processes a negative Data Directory size with an unbounded loop that increases the value of (external_IMAGE_DEBUG_DIRECTORY) *edd so that the address exceeds its own memory region, resulting in an out-of-bounds memory write, as demonstrated by objcopy copying private info with _bfd_pex64_bfd_copy_private_bfd_data_common in pex64igen.c.

https://nvd.nist.gov/vuln/detail/CVE-2018-10534

CVEs


Live chat
Online