CVE-2018-17985 PUBLISHED

An issue was discovered in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31. There is a stack consumption problem caused by the cplus_demangle_type function making recursive calls to itself in certain scenarios involving many 'P' characters.

EPSS 0.17% · 38.7th percentile

Risk Scores

EPSS Score
0.17%
38.7th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSbinutils0, 2.29.1-12ubuntu1, 2.29.1-10ubuntu1
Ubuntu:16.04:LTSlibiberty20141014-1, 20160215-1, 20160215-1ubuntu0.2
Ubuntu:18.04:LTSlibiberty20170913-1, 0
Ubuntu:Pro:14.04:LTSbinutils2.24-5ubuntu14.2+esm2, 2.23.52.20130913-0ubuntu1, 2.23.90.20131017-1ubuntu1
Ubuntu:Pro:16.04:LTSbinutils2.26-8ubuntu2, 2.26-8ubuntu2.1, 2.26.1-1ubuntu1~16.04

Timeline

References

Open in Interactive Console →