CVE-2016-6131 — Improper Input Validation in Binutils
Severity
7.5HIGHNVD
EPSS
1.8%
top 17.36%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 7
Latest updateMay 17
Description
The demangler in GNU Libiberty allows remote attackers to cause a denial of service (infinite loop, stack overflow, and crash) via a cycle in the references of remembered mangled types.
CVSS vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6
Affected Packages1 packages
Patches
🔴Vulnerability Details
3GHSA▶
GHSA-j4gc-wrx5-3h2g: The demangler in GNU Libiberty allows remote attackers to cause a denial of service (infinite loop, stack overflow, and crash) via a cycle in the refe↗2022-05-17
OSV▶
CVE-2016-6131: The demangler in GNU Libiberty allows remote attackers to cause a denial of service (infinite loop, stack overflow, and crash) via a cycle in the refe↗2017-02-07
CVEList▶
CVE-2016-6131: The demangler in GNU Libiberty allows remote attackers to cause a denial of service (infinite loop, stack overflow, and crash) via a cycle in the refe↗2017-02-07
📋Vendor Advisories
6💬Community
13Bugzilla▶
CVE-2016-6131 gcc: gcc,gdb,binutils,libitm: Stack overflow vulnerability in libiberty demangler [fedora-all]↗2016-07-01
Bugzilla▶
CVE-2016-6131 binutils: gcc,gdb,binutils,libitm: Stack overflow vulnerability in libiberty demangler [fedora-all]↗2016-07-01
Bugzilla▶
CVE-2016-6131 mingw-binutils: gcc,gdb,binutils,libitm: Stack overflow vulnerability in libiberty demangler [fedora-all]↗2016-07-01
Bugzilla▶
CVE-2016-6131 mingw-gdb: gcc,gdb,binutils,libitm: Stack overflow vulnerability in libiberty demangler [fedora-all]↗2016-07-01
Bugzilla▶
CVE-2016-6131 mingw-gcc: gcc,gdb,binutils,libitm: Stack overflow vulnerability in libiberty demangler [epel-all]↗2016-07-01