CVE-2016-4487 PUBLISHED

Use-after-free vulnerability in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary, related to "btypevec."

EPSS 0.12% · 30.9th percentile

Risk Scores

EPSS Score
0.12%
30.9th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSbinutils-h8300-hms2.16.1-10, 0
Ubuntu:25.10gcc-h8300-hms1:3.4.6+dfsg2-4.2, 0
Ubuntu:16.04:LTSgccxml0, 0.9.0+git20140716-6
Ubuntu:25.10binutils-h8300-hms0, 2.16.1-10build1
Ubuntu:Pro:16.04:LTSbinutils2.26-8ubuntu2.1, 2.26-2ubuntu1, 2.26-3ubuntu1
Ubuntu:24.04:LTSbinutils-h8300-hms2.16.1-10build1, 0
Ubuntu:16.04:LTSnescc0, 1.3.5-1
Ubuntu:16.04:LTSht2.1.0-1, 2.1.0-1build1, 0
Ubuntu:Pro:14.04:LTSbinutils2.24-5ubuntu14.2+esm1, 2.24-5ubuntu14.2+esm2, 2.24-5ubuntu14.2+esm3
Ubuntu:18.04:LTSgcc-h8300-hms1:3.4.6+dfsg2-4ubuntu3, 1:3.4.6+dfsg2-4ubuntu1, 0
Ubuntu:18.04:LTSbinutils-h8300-hms2.16.1-10build1, 2.16.1-10, 0
Ubuntu:14.04:LTSgdb0, 7.6.1-0ubuntu3, 7.6.1-1ubuntu1
Ubuntu:16.04:LTSgdb7.10-1ubuntu3, 7.10-1ubuntu2, 7.11.1-0ubuntu1~16.04
Ubuntu:16.04:LTSgcc-arm-none-eabi15:4.9.3+svn227297-1build1, 15:4.9.3+svn231177-1, 0
Ubuntu:14.04:LTSlibiberty20131116-1, 0
Ubuntu:22.04:LTSgcc-h8300-hms0, 1:3.4.6+dfsg2-4.1, 1:3.4.6+dfsg2-4.2
Ubuntu:16.04:LTSlibiberty20141014-1, 20160215-1, 0
Ubuntu:20.04:LTSgcc-h8300-hms1:3.4.6+dfsg2-4.1, 0, 1:3.4.6+dfsg2-4ubuntu3
Ubuntu:24.04:LTSgcc-h8300-hms1:3.4.6+dfsg2-4.2, 0
Ubuntu:20.04:LTSbinutils-h8300-hms2.16.1-10build1, 0

…and 9 more

Timeline

References

Open in Interactive Console →