CVE-2018-7642NULL Pointer Dereference in Binutils

Severity
5.5MEDIUMNVD
EPSS
0.1%
top 64.81%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 2
Latest updateMay 13

Description

The swap_std_reloc_in function in aoutx.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to cause a denial of service (aout_32_swap_std_reloc_out NULL pointer dereference and application crash) via a crafted ELF file, as demonstrated by objcopy.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages5 packages

🔴Vulnerability Details

3
GHSA
GHSA-m75f-wcjq-49mw: The swap_std_reloc_in function in aoutx2022-05-13
OSV
CVE-2018-7642: The swap_std_reloc_in function in aoutx2018-03-02
CVEList
CVE-2018-7642: The swap_std_reloc_in function in aoutx2018-03-02

📋Vendor Advisories

4
Ubuntu
GNU binutils vulnerabilities2021-07-21
Red Hat
libbfd: remote dos via crafted file in function aout_32_swap_std_reloc_out in aoutx.h2018-07-12
Red Hat
binutils: NULL pointer dereference in swap_std_reloc_in function in aoutx.h resulting in crash2018-02-24
Debian
CVE-2018-7642: binutils - The swap_std_reloc_in function in aoutx.h in the Binary File Descriptor (BFD) li...2018

💬Community

4
Bugzilla
CVE-2018-14038 libbfd: remote dos via crafted file in function aout_32_swap_std_reloc_out in aoutx.h2019-03-08
Bugzilla
CVE-2018-7642 binutils: NULL pointer dereference in swap_std_reloc_in function in aoutx.h resulting in crash2018-03-08
Bugzilla
CVE-2018-7570 CVE-2018-7642 CVE-2018-7643 mingw-binutils: various flaws [epel-all]2018-03-05
Bugzilla
CVE-2018-7570 CVE-2018-7642 CVE-2018-7643 binutils: various flaws [fedora-all]2018-03-05
CVE-2018-7642 — NULL Pointer Dereference in Binutils | cvebase