
CVE-2017-17440 – Ubuntu Security Notice USN-4641-1
https://notcve.org/view.php?id=CVE-2017-17440
06 Dec 2017 — GNU Libextractor 1.6 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted GIF, IT (Impulse Tracker), NSFE, S3M (Scream Tracker 3), SID, or XM (eXtended Module) file, as demonstrated by the EXTRACTOR_xm_extract_method function in plugins/xm_extractor.c. GNU Libextractor 1.6 permite que atacantes remotos provoquen una denegación de servicio (desreferencia de puntero NULL y cierre inesperado de la aplicación) mediante un archivo GIF, IT (Impulse Tr... • http://www.securityfocus.com/bid/102116 • CWE-476: NULL Pointer Dereference •

CVE-2017-17426 – Ubuntu Security Notice USN-3534-1
https://notcve.org/view.php?id=CVE-2017-17426
05 Dec 2017 — The malloc function in the GNU C Library (aka glibc or libc6) 2.26 could return a memory block that is too small if an attempt is made to allocate an object whose size is close to SIZE_MAX, potentially leading to a subsequent heap overflow. This occurs because the per-thread cache (aka tcache) feature enables a code path that lacks an integer overflow check. La función malloc en GNU C Library (también conocida como glibc o libc6) 2.26 podría devolver un bloque de memoria demasiado pequeño si se intenta asig... • https://sourceware.org/bugzilla/show_bug.cgi?id=22375 • CWE-190: Integer Overflow or Wraparound •

CVE-2017-17122 – Ubuntu Security Notice USN-6413-1
https://notcve.org/view.php?id=CVE-2017-17122
04 Dec 2017 — The dump_relocs_in_section function in objdump.c in GNU Binutils 2.29.1 does not check for reloc count integer overflows, which allows remote attackers to cause a denial of service (excessive memory allocation, or heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted PE file. La función dump_relocs_in_section en objdump.c en GNU Binutils 2.29.1 no busca desbordamientos de conteo de enteros reloc, lo que permite que atacantes remotos causen una denegación d... • https://security.gentoo.org/glsa/201811-17 • CWE-190: Integer Overflow or Wraparound •

CVE-2017-17125 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2017-17125
04 Dec 2017 — nm.c and objdump.c in GNU Binutils 2.29.1 mishandle certain global symbols, which allows remote attackers to cause a denial of service (_bfd_elf_get_symbol_version_string buffer over-read and application crash) or possibly have unspecified other impact via a crafted ELF file. nm.c y objdump.c en GNU Binutils 2.29.1 gestionan de manera incorrecta ciertos símbolos globales, lo que permite que atacantes remotos provoquen una denegación de servicio (sobrelectura del búfer _bfd_elf_get_symbol_version_string y ci... • https://security.gentoo.org/glsa/201811-17 • CWE-125: Out-of-bounds Read •

CVE-2017-17121 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2017-17121
04 Dec 2017 — The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, allows remote attackers to cause a denial of service (memory access violation) or possibly have unspecified other impact via a COFF binary in which a relocation refers to a location after the end of the to-be-relocated section. La biblioteca Binary File Descriptor (BFD), también conocida como libbfd, tal y como se distribuye en GNU Binutils 2.29.1, permite que atacantes remotos provoquen una denegación de servicio ... • https://security.gentoo.org/glsa/201811-17 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-17126 – Gentoo Linux Security Advisory 201811-17
https://notcve.org/view.php?id=CVE-2017-17126
04 Dec 2017 — The load_debug_section function in readelf.c in GNU Binutils 2.29.1 allows remote attackers to cause a denial of service (invalid memory access and application crash) or possibly have unspecified other impact via an ELF file that lacks section headers. La función load_debug_section en readelf.c en GNU Binutils 2.29.1 permite que atacantes remotos provoquen una denegación de servicio (acceso no válido a la memoria y cierre inesperado de aplicación) o, probablemente, provocar cualquier otro tipo de impacto me... • https://security.gentoo.org/glsa/201811-17 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-17123 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2017-17123
04 Dec 2017 — The coff_slurp_reloc_table function in coffcode.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted COFF based file. La función coff_slurp_reloc_table en coffcode.h en la biblioteca Binary File Descriptor (BFD), también conocida como libbfd, tal y como se distribuye en GNU Binutils 2.29.1 permite que atacantes remotos provoquen una denegación de s... • https://security.gentoo.org/glsa/201811-17 • CWE-476: NULL Pointer Dereference •

CVE-2017-17124 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2017-17124
04 Dec 2017 — The _bfd_coff_read_string_table function in coffgen.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, does not properly validate the size of the external string table, which allows remote attackers to cause a denial of service (excessive memory consumption, or heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted COFF binary. La función _bfd_coff_read_string_table en coffgen.c en la biblioteca Binary File De... • https://security.gentoo.org/glsa/201811-17 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-17080 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2017-17080
30 Nov 2017 — elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, does not validate sizes of core notes, which allows remote attackers to cause a denial of service (bfd_getl32 heap-based buffer over-read and application crash) via a crafted object file, related to elfcore_grok_netbsd_procinfo, elfcore_grok_openbsd_procinfo, and elfcore_grok_nto_status. elf.c en la biblioteca Binary File Descriptor (BFD), conocida como libbfd, tal y como se distribuye en GNU Binutils 2.29... • https://security.gentoo.org/glsa/201811-17 • CWE-125: Out-of-bounds Read •

CVE-2017-16879 – Ubuntu Security Notice USN-5477-1
https://notcve.org/view.php?id=CVE-2017-16879
18 Nov 2017 — Stack-based buffer overflow in the _nc_write_entry function in tinfo/write_entry.c in ncurses 6.0 allows attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted terminfo file, as demonstrated by tic. Desbordamiento de búfer basado en pila en la función _nc_write_entry en tinfo/write_entry.c en ncurses en la versión 6.0 permite que los atacantes provoquen una denegación de servicio (cierre inesperado de la aplicación) o posiblemente ejecuten código arbitrar... • https://packetstorm.news/files/id/145045 • CWE-787: Out-of-bounds Write •