ALPINE-CVE-2018-7643 PUBLISHED CVSS 7.800000190734863 HIGH

The display_debug_ranges function in dwarf.c in GNU Binutils 2.30 allows remote attackers to cause a denial of service (integer overflow and application crash) or possibly have unspecified other impact via a crafted ELF file, as demonstrated by objdump.

Risk Scores

CVSS v3.0
7.800000190734863
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersions
Alpine:v3.7binutils0, 2.20.51.0.12-r0, 2.20.51.0.4-r1
Alpine:v3.8binutils0, 2.20.51.0.12-r0, 2.20.51.0.4-r1

Timeline

References

Open in Interactive Console →