cbcvebase.
CVE-2005-1704
published 2005-05-24

CVE-2005-1704: Integer overflow in the Binary File Descriptor (BFD) library for gdb before 6.3, binutils, elfutils, and possibly other packages, allows user-assisted…

medium4.6CVSS 3.1
AVLACLAuNCPIPAP
Integer overflow in the Binary File Descriptor (BFD) library for gdb before 6.3, binutils, elfutils, and possibly other packages, allows user-assisted attackers to execute arbitrary code via a crafted object file that specifies a large number of section headers, leading to a heap-based buffer overflow.

Affected

6 ranges
VendorProductVersion rangeFixed in
debiangdb< gdb 6.3-6 (bookworm)gdb 6.3-6 (bookworm)
gnugdb<= 6.3
gnugdb>= 0 < 6.3-66.3-6
gnugdb>= 0 < 6.3-66.3-6
gnugdb>= 0 < 6.3-66.3-6
gnugdb>= 0 < 6.3-66.3-6

CVSS provenance

nvd4.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
osv4.6MEDIUM