CVE-2005-4808
published 2005-12-31CVE-2005-4808: Buffer overflow in reset_vars in config/tc-crx.c in the GNU as (gas) assembler in Free Software Foundation GNU Binutils before 20050714 allows user-assisted…
PriorityP425high7.6CVSS 2.0
AVNACHAuNCCICAC
EPSS
2.28%
81.3th percentile
Buffer overflow in reset_vars in config/tc-crx.c in the GNU as (gas) assembler in Free Software Foundation GNU Binutils before 20050714 allows user-assisted attackers to have an unknown impact via a crafted .s file.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| debian | binutils | < binutils 2.17-1 (bookworm) | binutils 2.17-1 (bookworm) |
| gnu | binutils | < 2.17 | 2.17 |
| gnu | binutils | >= 0 < 2.17-1 | 2.17-1 |
| gnu | binutils | >= 0 < 2.17-1 | 2.17-1 |
| gnu | binutils | >= 0 < 2.17-1 | 2.17-1 |
| gnu | binutils | >= 0 < 2.17-1 | 2.17-1 |
CVSS provenance
nvdv2.07.6HIGHAV:N/AC:H/Au:N/C:C/I:C/A:C
osv7.6HIGH
vendor_debian7.6LOW
vendor_redhat7.6HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
binutils vulnerability
vendor_ubuntu·2006-10-18
CVE-2005-4808 binutils vulnerability
Title: binutils vulnerability
Summary: binutils vulnerability
A buffer overflow was discovered in gas (the GNU assembler). By
tricking an user or automated system (like a compile farm) into
assembling a specially crafted source file with gcc or gas, this could
be exploited to execute arbitrary code with the user's privileges.
Instructions: In general, a standard system upgrade is sufficient to effect the
necessary changes.
Debian
CVE-2005-4808: binutils - Buffer overflow in reset_vars in config/tc-crx.c in the GNU as (gas) assembler i...
vendor_debian·2005·CVSS 7.6
CVE-2005-4808 [HIGH] CVE-2005-4808: binutils - Buffer overflow in reset_vars in config/tc-crx.c in the GNU as (gas) assembler i...
Buffer overflow in reset_vars in config/tc-crx.c in the GNU as (gas) assembler in Free Software Foundation GNU Binutils before 20050714 allows user-assisted attackers to have an unknown impact via a crafted .s file.
Scope: local
bookworm: resolved (fixed in 2.17-1)
bullseye: resolved (fixed in 2.17-1)
forky: resolved (fixed in 2.17-1)
sid: resolved (fixed in 2.17-1)
trixie: resolved (fixed in 2.17-1)
Red Hat
CVE-2005-4808: Buffer overflow in reset_vars in config/tc-crx
vendor_redhat·CVSS 7.6
CVE-2005-4808 [HIGH] CVE-2005-4808: Buffer overflow in reset_vars in config/tc-crx
Buffer overflow in reset_vars in config/tc-crx.c in the GNU as (gas) assembler in Free Software Foundation GNU Binutils before 20050714 allows user-assisted attackers to have an unknown impact via a crafted .s file.
Statement: gas (and gcc) make no promise that they are fault tolerant to bad input. We do not plan on producing security updates for Red Hat Enterprise Linux to correct these bugs.
GHSA
GHSA-28h9-hh7q-86j5: Buffer overflow in reset_vars in config/tc-crx
ghsa_unreviewed·2022-05-01
CVE-2005-4808 [HIGH] GHSA-28h9-hh7q-86j5: Buffer overflow in reset_vars in config/tc-crx
Buffer overflow in reset_vars in config/tc-crx.c in the GNU as (gas) assembler in Free Software Foundation GNU Binutils before 20050714 allows user-assisted attackers to have an unknown impact via a crafted .s file.
OSV
CVE-2005-4808: Buffer overflow in reset_vars in config/tc-crx
osv·2005-12-31·CVSS 7.6
CVE-2005-4808 [HIGH] CVE-2005-4808: Buffer overflow in reset_vars in config/tc-crx
Buffer overflow in reset_vars in config/tc-crx.c in the GNU as (gas) assembler in Free Software Foundation GNU Binutils before 20050714 allows user-assisted attackers to have an unknown impact via a crafted .s file.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2005-12-31
Published