
CVE-2017-17126 – Gentoo Linux Security Advisory 201811-17
https://notcve.org/view.php?id=CVE-2017-17126
04 Dec 2017 — The load_debug_section function in readelf.c in GNU Binutils 2.29.1 allows remote attackers to cause a denial of service (invalid memory access and application crash) or possibly have unspecified other impact via an ELF file that lacks section headers. La función load_debug_section en readelf.c en GNU Binutils 2.29.1 permite que atacantes remotos provoquen una denegación de servicio (acceso no válido a la memoria y cierre inesperado de aplicación) o, probablemente, provocar cualquier otro tipo de impacto me... • https://security.gentoo.org/glsa/201811-17 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-17080 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2017-17080
30 Nov 2017 — elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, does not validate sizes of core notes, which allows remote attackers to cause a denial of service (bfd_getl32 heap-based buffer over-read and application crash) via a crafted object file, related to elfcore_grok_netbsd_procinfo, elfcore_grok_openbsd_procinfo, and elfcore_grok_nto_status. elf.c en la biblioteca Binary File Descriptor (BFD), conocida como libbfd, tal y como se distribuye en GNU Binutils 2.29... • https://security.gentoo.org/glsa/201811-17 • CWE-125: Out-of-bounds Read •

CVE-2017-16826 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2017-16826
15 Nov 2017 — The coff_slurp_line_table function in coffcode.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, allows remote attackers to cause a denial of service (invalid memory access and application crash) or possibly have unspecified other impact via a crafted PE file. La función coff_slurp_line_table en coffcode.h en la biblioteca Binary File Descriptor (BFD), conocida como libbfd, tal y como se distribuye en GNU Binutils 2.29.1 permite que atacantes remotos provoque... • https://security.gentoo.org/glsa/201811-17 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-16827 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2017-16827
15 Nov 2017 — The aout_get_external_symbols function in aoutx.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, allows remote attackers to cause a denial of service (slurp_symtab invalid free and application crash) or possibly have unspecified other impact via a crafted ELF file. La función aout_get_external_symbols en aoutx.h en la biblioteca Binary File Descriptor (BFD), conocida como libbfd, tal y como se distribuye en GNU Binutils 2.29.1 permite que atacantes remotos p... • https://security.gentoo.org/glsa/201811-17 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-16828 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2017-16828
15 Nov 2017 — The display_debug_frames function in dwarf.c in GNU Binutils 2.29.1 allows remote attackers to cause a denial of service (integer overflow and heap-based buffer over-read, and application crash) or possibly have unspecified other impact via a crafted ELF file, related to print_debug_frame. La función display_debug_frames en dwarf.c en GNU Binutils 2.29.1 permite que atacantes remotos provoquen una denegación de servicio (desbordamiento de enteros, sobrelectura de búfer basada en memoria dinámica o heap y ci... • https://security.gentoo.org/glsa/201811-17 • CWE-190: Integer Overflow or Wraparound •

CVE-2017-16829 – Gentoo Linux Security Advisory 201811-17
https://notcve.org/view.php?id=CVE-2017-16829
15 Nov 2017 — The _bfd_elf_parse_gnu_properties function in elf-properties.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, does not prevent negative pointers, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) or possibly have unspecified other impact via a crafted ELF file. La función _bfd_elf_parse_gnu_properties en elf-properties.c en la biblioteca Binary File Descriptor (BFD), conocida como libbfd, tal y como se dist... • https://security.gentoo.org/glsa/201811-17 • CWE-125: Out-of-bounds Read •

CVE-2017-16830 – Gentoo Linux Security Advisory 201811-17
https://notcve.org/view.php?id=CVE-2017-16830
15 Nov 2017 — The print_gnu_property_note function in readelf.c in GNU Binutils 2.29.1 does not have integer-overflow protection on 32-bit platforms, which allows remote attackers to cause a denial of service (segmentation violation and application crash) or possibly have unspecified other impact via a crafted ELF file. La función GNU Binutils en readelf.c en GNU Binutils 2.29.1 no tiene protección contra desbordamientos de enteros en plataformas de 32 bits, lo que permite que atacantes remotos provoquen una denegación d... • http://www.securityfocus.com/bid/101941 • CWE-190: Integer Overflow or Wraparound •

CVE-2017-16831 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2017-16831
15 Nov 2017 — coffgen.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, does not validate the symbol count, which allows remote attackers to cause a denial of service (integer overflow and application crash, or excessive memory allocation) or possibly have unspecified other impact via a crafted PE file. coffgen.c en la biblioteca Binary File Descriptor (BFD), conocida como libbfd, tal y como se distribuye en GNU Binutils 2.29.1 no valida el recuento de símbolos, lo que per... • https://security.gentoo.org/glsa/201811-17 • CWE-190: Integer Overflow or Wraparound •

CVE-2017-16832 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2017-16832
15 Nov 2017 — The pe_bfd_read_buildid function in peicode.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, does not validate size and offset values in the data dictionary, which allows remote attackers to cause a denial of service (segmentation violation and application crash) or possibly have unspecified other impact via a crafted PE file. La función pe_bfd_read_buildid en peicode.h en la biblioteca Binary File Descriptor (BFD), conocida como libbfd, tal y como se distri... • https://security.gentoo.org/glsa/201811-17 • CWE-190: Integer Overflow or Wraparound •

CVE-2017-15996 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2017-15996
29 Oct 2017 — elfcomm.c in readelf in GNU Binutils 2.29 allows remote attackers to cause a denial of service (excessive memory allocation) or possibly have unspecified other impact via a crafted ELF file that triggers a "buffer overflow on fuzzed archive header," related to an uninitialized variable, an improper conditional jump, and the get_archive_member_name, process_archive_index_and_symbols, and setup_archive functions. elfcomm.c en readelf en GNU Binutils 2.29 permite que atacantes remotos provoquen una denegación ... • http://www.securityfocus.com/bid/101608 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •