Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2017-12448
Description:The bfd_cache_close function in bfd/cache.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause a heap use after free and possibly achieve code execution via a crafted nested archive file. This issue occurs because incorrect functions are called during an attempt to release memory. The issue can be addressed by better input validation in the bfd_generic_archive_p function in bfd/archive.c.
Test IDs: 1.3.6.1.4.1.25623.1.1.4.2017.3170.1  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2017-12448
https://sourceware.org/bugzilla/show_bug.cgi?id=21787




© 1998-2025 E-Soft Inc. All rights reserved.