CVE-2018-20712
published 2019-01-15CVE-2018-20712: A heap-based buffer over-read exists in the function d_expression_1 in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31.1. A crafted input…
PriorityP427medium6.5CVSS 3.0
AVNACLPRNUIRSUCNINAH
EPSS
2.69%
84.8th percentile
A heap-based buffer over-read exists in the function d_expression_1 in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31.1. A crafted input can cause segmentation faults, leading to denial-of-service, as demonstrated by c++filt.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | binutils | — | — |
| gnu | binutils | — | — |
CVSS provenance
nvdv3.06.5MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv6.5MEDIUM
vendor_debian6.5LOW
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
libiberty: heap-based buffer over-read in d_expression_1
vendor_redhat·2018-12-28·CVSS 6.5
CVE-2018-20712 [MEDIUM] CWE-476 libiberty: heap-based buffer over-read in d_expression_1
libiberty: heap-based buffer over-read in d_expression_1
A heap-based buffer over-read exists in the function d_expression_1 in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31.1. A crafted input can cause segmentation faults, leading to denial-of-service, as demonstrated by c++filt.
Package: binutils (Red Hat Enterprise Linux 5) - Not affected
Package: gcc (Red Hat Enterprise Linux 5) - Not affected
Package: gdb (Red Hat Enterprise Linux 5) - Not affected
Package: binutils (Red Hat Enterprise Linux 6) - Not affected
Package: gcc (Red Hat Enterprise Linux 6) - Not affected
Package: gdb (Red Hat Enterprise Linux 6) - Not affected
Package: binutils (Red Hat Enterprise Linux 7) - Not affected
Package: gcc (Red Hat Enterprise Linux 7) - Not affected
Package: gdb (R
Debian
CVE-2018-20712: binutils - A heap-based buffer over-read exists in the function d_expression_1 in cp-demang...
vendor_debian·2018·CVSS 6.5
CVE-2018-20712 [MEDIUM] CVE-2018-20712: binutils - A heap-based buffer over-read exists in the function d_expression_1 in cp-demang...
A heap-based buffer over-read exists in the function d_expression_1 in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31.1. A crafted input can cause segmentation faults, leading to denial-of-service, as demonstrated by c++filt.
Scope: local
bookworm: open
bullseye: open
forky: open
sid: open
trixie: open
GHSA
GHSA-cgr8-f44r-j4r5: A heap-based buffer over-read exists in the function d_expression_1 in cp-demangle
ghsa_unreviewed·2022-05-13
CVE-2018-20712 [MEDIUM] CWE-125 GHSA-cgr8-f44r-j4r5: A heap-based buffer over-read exists in the function d_expression_1 in cp-demangle
A heap-based buffer over-read exists in the function d_expression_1 in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31.1. A crafted input can cause segmentation faults, leading to denial-of-service, as demonstrated by c++filt.
OSV
CVE-2018-20712: A heap-based buffer over-read exists in the function d_expression_1 in cp-demangle
osv·2019-01-15·CVSS 6.5
CVE-2018-20712 [MEDIUM] CVE-2018-20712: A heap-based buffer over-read exists in the function d_expression_1 in cp-demangle
A heap-based buffer over-read exists in the function d_expression_1 in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31.1. A crafted input can cause segmentation faults, leading to denial-of-service, as demonstrated by c++filt.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-20712 binutils: libiberty: heap-based buffer over-read in d_expression_1 [fedora-all]
bugzilla·2019-01-22·CVSS 6.5
CVE-2018-20712 [MEDIUM] CVE-2018-20712 binutils: libiberty: heap-based buffer over-read in d_expression_1 [fedora-all]
CVE-2018-20712 binutils: libiberty: heap-based buffer over-read in d_expression_1 [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple s
Bugzilla
CVE-2018-20712 libiberty: heap-based buffer over-read in d_expression_1
bugzilla·2019-01-22·CVSS 6.5
CVE-2018-20712 [MEDIUM] CVE-2018-20712 libiberty: heap-based buffer over-read in d_expression_1
CVE-2018-20712 libiberty: heap-based buffer over-read in d_expression_1
A heap-based buffer over-read exists in the function d_expression_1 in
cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31.1. A crafted
input can cause segmentation faults, leading to denial-of-service.
Upstream Issue:
https://sourceware.org/bugzilla/show_bug.cgi?id=24043
Discussion:
Created binutils tracking bugs for this issue:
Affects: fedora-all [bug 1668270]
---
The flaw was introduced in binutils through commit af03af8f55f2536b6e20928e6b1fa0324a5f3d6e.
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/cve-2018-20712
http://www.securityfocus.com/bid/106563https://gcc.gnu.org/bugzilla/show_bug.cgi?id=88629https://sourceware.org/bugzilla/show_bug.cgi?id=24043https://support.f5.com/csp/article/K38336243http://www.securityfocus.com/bid/106563https://gcc.gnu.org/bugzilla/show_bug.cgi?id=88629https://sourceware.org/bugzilla/show_bug.cgi?id=24043https://support.f5.com/csp/article/K38336243
2019-01-15
Published