
CVE-2017-12459 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2017-12459
04 Aug 2017 — The bfd_mach_o_read_symtab_strtab function in bfd/mach-o.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap write and possibly achieve code execution via a crafted mach-o file. La función bfd_mach_o_read_symtab_strtab en bfd/mach-o.c en la librería Binary File Descriptor (BFD), también conocida como libbfd, tal y como se distribuye en GNU Binutils 2.29 y anteriores, permite que atacantes remotos ... • https://sourceware.org/bugzilla/show_bug.cgi?id=21840 • CWE-787: Out-of-bounds Write •

CVE-2017-9954 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2017-9954
26 Jun 2017 — The getvalue function in tekhex.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, allows remote attackers to cause a denial of service (stack-based buffer over-read and application crash) via a crafted tekhex file, as demonstrated by mishandling within the nm program. La función getvalue en el archivo teckhex.c en la librería Binary File Descriptor (BFD), distribuida en GNU Binutils 2.28, permite a un atacante remoto causar una denegación de servicio (buffer ov... • http://www.securityfocus.com/bid/99307 • CWE-125: Out-of-bounds Read •

CVE-2017-9955
https://notcve.org/view.php?id=CVE-2017-9955
26 Jun 2017 — The get_build_id function in opncls.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file in which a certain size field is larger than a corresponding data field, as demonstrated by mishandling within the objdump program. La función get_build_id en el archivo opncls.c en la librería Binary File Descriptor (BFD) (también conocida como libbfd) d... • http://www.securityfocus.com/bid/99573 • CWE-125: Out-of-bounds Read •

CVE-2017-9743
https://notcve.org/view.php?id=CVE-2017-9743
19 Jun 2017 — The print_insn_score32 function in opcodes/score7-dis.c:552 in GNU Binutils 2.28 allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "objdump -D" execution. La función print_insn_score32 en el archivo opcodes/score7-dis.c:552 en GNU Binutils versión 2.28, permite a los atacantes remotos causar una denegación de servicio (desbordamiento de búfer y bl... • http://www.securityfocus.com/bid/99106 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-9744 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2017-9744
19 Jun 2017 — The sh_elf_set_mach_from_flags function in bfd/elf32-sh.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "objdump -D" execution. La función sh_elf_set_mach_from_flags en el archivo bfd/elf32-sh.c en la biblioteca Binary File Descriptor (BFD) (también ... • http://www.securityfocus.com/bid/99108 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-9745 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2017-9745
19 Jun 2017 — The _bfd_vms_slurp_etir function in bfd/vms-alpha.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "objdump -D" execution. La función _bfd_vms_slurp_etir en el archivo bfd/vms-alpha.c en la biblioteca Binary File Descriptor (BFD) (también se conoce co... • http://www.securityfocus.com/bid/99109 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-9746 – GNU binutils - 'disassemble_bytes' Heap Overflow
https://notcve.org/view.php?id=CVE-2017-9746
19 Jun 2017 — The disassemble_bytes function in objdump.c in GNU Binutils 2.28 allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of rae insns printing for this file during "objdump -D" execution. La función disassemble_bytes en el archivo objdump.c en GNU Binutils versión 2.28, permite a los atacantes remotos causar una denegación de servicio (desbordamiento de búfer y bloqueo de ... • https://packetstorm.news/files/id/143047 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-9749 – GNU binutils - 'decode_pseudodbg_assert_0' Buffer Overflow
https://notcve.org/view.php?id=CVE-2017-9749
19 Jun 2017 — The *regs* macros in opcodes/bfin-dis.c in GNU Binutils 2.28 allow remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "objdump -D" execution. Las macros *regs* en el archivo opcodes/bfin-dis.c en GNU Binutils versión 2.28, permite a los atacantes remotos causar una denegación de servicio (desbordamiento de búfer y bloqueo de aplicación) o posiblemente ten... • https://packetstorm.news/files/id/143049 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-9751 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2017-9751
19 Jun 2017 — opcodes/rl78-decode.opc in GNU Binutils 2.28 has an unbounded GETBYTE macro, which allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "objdump -D" execution. En el archivo opcodes/rl78-decode.opc en GNU Binutils versión 2.28, presenta una macro GETBYTE ilimitada, lo que permite a los atacantes remotos causar una denegación de servicio (desbordamien... • http://www.securityfocus.com/bid/99111 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-9752 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2017-9752
19 Jun 2017 — bfd/vms-alpha.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file in the _bfd_vms_get_value and _bfd_vms_slurp_etir functions during "objdump -D" execution. En el archivo bfd/vms-alpha.c en la biblioteca Binary File Descriptor (BFD) (también se conoce como libb... • http://www.securityfocus.com/bid/99122 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •