CVE-2016-4493 PUBLISHED

The demangle_template_value_parm and do_hpacc_template_literal functions in cplus-dem.c in libiberty allow remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted binary.

EPSS 0.44% · 63.1th percentile

Risk Scores

EPSS Score
0.44%
63.1th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSbinutils-h8300-hms2.16.1-10build1, 0, 2.16.1-10
Ubuntu:24.04:LTSbinutils-h8300-hms0, 2.16.1-10build1
Ubuntu:22.04:LTSnescc0, 1.3.5-1.1build1
Ubuntu:18.04:LTSgcc-h8300-hms0, 1:3.4.6+dfsg2-4ubuntu3, 1:3.4.6+dfsg2-4ubuntu1
Ubuntu:16.04:LTSgccxml0.9.0+git20140716-6, 0
Ubuntu:18.04:LTSnescc1.3.5-1, 0, 1.3.5-1.1
Ubuntu:14.04:LTSgdb7.6.1-0ubuntu3, 0, 7.7.1-0ubuntu5~14.04.2
Ubuntu:16.04:LTSlibiberty0, 20141014-1, 20160215-1
Ubuntu:16.04:LTSgcc-arm-none-eabi0, 15:4.9.3+svn227297-1, 15:4.9.3+svn227297-1build1
Ubuntu:14.04:LTSlibiberty20131116-1, 0
Ubuntu:20.04:LTSnescc1.3.5-1.1build1, 0
Ubuntu:16.04:LTSvalgrind1:3.11.0-1ubuntu3, 1:3.11.0-1ubuntu4.1, 1:3.11.0-1ubuntu2
Ubuntu:20.04:LTSgcc-h8300-hms1:3.4.6+dfsg2-4ubuntu3, 1:3.4.6+dfsg2-4.1, 0
Ubuntu:16.04:LTSht2.1.0-1build1, 2.1.0-1, 0
Ubuntu:16.04:LTSsdcc0, 3.4.0+dfsg-2ubuntu1, 3.5.0+dfsg-1
Ubuntu:25.10gcc-h8300-hms0, 1:3.4.6+dfsg2-4.2
Ubuntu:18.04:LTSsdcc0, 3.5.0+dfsg-2, 3.5.0+dfsg-2build1
Ubuntu:16.04:LTSnescc1.3.5-1, 0
Ubuntu:24.04:LTSgcc-h8300-hms0, 1:3.4.6+dfsg2-4.2
Ubuntu:Pro:14.04:LTSbinutils2.24-5ubuntu13, 0, 2.23.52.20130913-0ubuntu1

…and 10 more

Timeline

References

Open in Interactive Console →