CVE-2018-6543

high
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

In GNU Binutils 2.30, there's an integer overflow in the function load_specific_debug_section() in objdump.c, which results in `malloc()` with 0 size. A crafted ELF file allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.

References

http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00072.html

http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00008.html

http://www.securityfocus.com/bid/102985

https://security.gentoo.org/glsa/201811-17

https://sourceware.org/bugzilla/show_bug.cgi?id=22769

Details

Source: MITRE

Published: 2018-02-02

Updated: 2019-10-31

Type: CWE-190

Risk Information

CVSS v2

Base Score: 6.8

Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Impact Score: 6.4

Exploitability Score: 8.6

Severity: MEDIUM

CVSS v3

Base Score: 7.8

Vector: CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Impact Score: 5.9

Exploitability Score: 1.8

Severity: HIGH

Vulnerable Software

Configuration 1

OR

cpe:2.3:a:gnu:binutils:2.30:*:*:*:*:*:*:*

Tenable Plugins

View all (17 total)

IDNameProductFamilySeverity
151919Ubuntu 16.04 LTS : GNU binutils vulnerabilities (USN-4336-2)NessusUbuntu Local Security Checks
critical
130576openSUSE Security Update : binutils (openSUSE-2019-2432)NessusSuSE Local Security Checks
high
130420openSUSE Security Update : binutils (openSUSE-2019-2415)NessusSuSE Local Security Checks
high
130340SUSE SLED15 / SLES15 Security Update : binutils (SUSE-SU-2019:2780-1)NessusSuSE Local Security Checks
high
130257SUSE SLED15 / SLES15 Security Update : binutils (SUSE-SU-2019:2779-1)NessusSuSE Local Security Checks
high
123342openSUSE Security Update : binutils (openSUSE-2019-808)NessusSuSE Local Security Checks
high
121925Photon OS 2.0: Binutils PHSA-2018-2.0-0021NessusPhotonOS Local Security Checks
high
121813Photon OS 1.0: Binutils PHSA-2018-1.0-0112NessusPhotonOS Local Security Checks
high
120133SUSE SLED15 / SLES15 Security Update : binutils (SUSE-SU-2018:3170-2)NessusSuSE Local Security Checks
high
120132SUSE SLED15 / SLES15 Security Update : binutils (SUSE-SU-2018:3170-1)NessusSuSE Local Security Checks
high
119162GLSA-201811-17 : Binutils: Multiple vulnerabilitiesNessusGentoo Local Security Checks
high
118337openSUSE Security Update : binutils (openSUSE-2018-1222)NessusSuSE Local Security Checks
high
118303SUSE SLES12 Security Update : binutils (SUSE-SU-2018:3207-2)NessusSuSE Local Security Checks
critical
118220openSUSE Security Update : binutils (openSUSE-2018-1198)NessusSuSE Local Security Checks
critical
118199SUSE SLED12 / SLES12 Security Update : binutils (SUSE-SU-2018:3207-1)NessusSuSE Local Security Checks
critical
111922Photon OS 1.0: Binutils PHSA-2018-1.0-0112 (deprecated)NessusPhotonOS Local Security Checks
high
111290Photon OS 2.0 : binutils (PhotonOS-PHSA-2018-2.0-0021) (deprecated)NessusPhotonOS Local Security Checks
high