
CVE-2016-2226 – GNU libiberty - Buffer Overflow
https://notcve.org/view.php?id=CVE-2016-2226
24 Feb 2017 — Integer overflow in the string_appends function in cplus-dem.c in libiberty allows remote attackers to execute arbitrary code via a crafted executable, which triggers a buffer overflow. Desbordamiento de entero en la función string_appends en cplus-dem.c en libiberty permite a atacantes remotos ejecutar código arbitrario a través de un ejecutable manipulado, que desencadena un desbordamiento de búfer. It was discovered that libiberty incorrectly handled certain string operations. If a user or automated syst... • https://packetstorm.news/files/id/143521 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer CWE-190: Integer Overflow or Wraparound •

CVE-2016-4487 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2016-4487
24 Feb 2017 — Use-after-free vulnerability in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary, related to "btypevec." Vulnerabilidad de uso después de liberación en libiberty permite a atacantes remotos provocar una denegación de servicio (error de segmentación y caída) a través de un binario manipulado, relacionado con "btypevec". It was discovered that libiberty incorrectly handled certain string operations. If a user or automated system were tricked in... • http://www.openwall.com/lists/oss-security/2016/05/05/5 • CWE-416: Use After Free •

CVE-2016-4488 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2016-4488
24 Feb 2017 — Use-after-free vulnerability in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary, related to "ktypevec." Vulnerabilidad después de liberación en libiberty permite a atacantes remotos provocar una denegación de servicio (error de segmentación y caída) a través de un binario manipulado, relacionado con "ktypevec". It was discovered that libiberty incorrectly handled certain string operations. If a user or automated system were tricked into proc... • http://www.openwall.com/lists/oss-security/2016/05/05/5 • CWE-416: Use After Free •

CVE-2016-4489 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2016-4489
24 Feb 2017 — Integer overflow in the gnu_special function in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary, related to the "demangling of virtual tables." Desbordamiento de entero en la función gnu_special en libiberty permite a atacantes remotos provocar una denegación de servicio (error de segmentación y caída) a través de un binario manipulado, relacionado con el "desmantelamiento de tablas virtuales". It was discovered that libiberty incorrectly ha... • http://www.openwall.com/lists/oss-security/2016/05/05/5 • CWE-190: Integer Overflow or Wraparound •

CVE-2016-4490 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2016-4490
24 Feb 2017 — Integer overflow in cp-demangle.c in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary, related to inconsistent use of the long and int types for lengths. Desbordamiento de búfer en cp-demangle.c en libiberty permite a atacantes remotos provocar una denegación de servicio (error de segmentación y caída) a través de un binario manipulado, relacionado con uso inconsistente de los tipos largo e int para longitudes. It was discovered that libibert... • http://www.openwall.com/lists/oss-security/2016/05/05/5 • CWE-190: Integer Overflow or Wraparound •

CVE-2016-4491 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2016-4491
24 Feb 2017 — The d_print_comp function in cp-demangle.c in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary, which triggers infinite recursion and a buffer overflow, related to a node having "itself as ancestor more than once." La función d_print_comp en cp-demangle.c en libiberty permite a atacantes remotos provocar una denegación de servicio (error de segmentación y caída) a través de un binario manipulado, que desencadena recursión infinita y un desbor... • http://www.openwall.com/lists/oss-security/2016/05/05/5 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2016-4492 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2016-4492
24 Feb 2017 — Buffer overflow in the do_type function in cplus-dem.c in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary. Desbordamiento de búfer en la función do_type en cplus-dem.c en libiberty permite a atacantes remotos provocar una denegación de servicio (error de segmentación y caída) a través de un binario manipulado. It was discovered that libiberty incorrectly handled certain string operations. If a user or automated system were tricked into proce... • http://www.openwall.com/lists/oss-security/2016/05/05/5 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2016-4493 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2016-4493
24 Feb 2017 — The demangle_template_value_parm and do_hpacc_template_literal functions in cplus-dem.c in libiberty allow remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted binary. Las funciones demangle_template_value_parm y do_hpacc_template_literal en cplus-dem.c en libiberty permiten a atacantes remotos provocar una denegación de servicio (lectura fuera de límites y caída) a través de un binario manipulado. It was discovered that libiberty incorrectly handled certain string oper... • http://www.openwall.com/lists/oss-security/2016/05/05/5 • CWE-125: Out-of-bounds Read •

CVE-2016-6131 – Ubuntu Security Notice USN-4336-2
https://notcve.org/view.php?id=CVE-2016-6131
07 Feb 2017 — The demangler in GNU Libiberty allows remote attackers to cause a denial of service (infinite loop, stack overflow, and crash) via a cycle in the references of remembered mangled types. El demangler en GNU Libiberty permite a atacantes remotos provocar una denegación de servicio (bucle infinito, desbordamiento de pila y caída) a través de un ciclo en las referencias de tipos destrozados recordados. It was discovered that libiberty incorrectly handled certain string operations. If a user or automated system ... • http://www.openwall.com/lists/oss-security/2016/06/30/4 • CWE-20: Improper Input Validation •

CVE-2012-3509 – Mandriva Linux Security Advisory 2015-029-1
https://notcve.org/view.php?id=CVE-2012-3509
05 Sep 2012 — Multiple integer overflows in the (1) _objalloc_alloc function in objalloc.c and (2) objalloc_alloc macro in include/objalloc.h in GNU libiberty, as used by binutils 2.22, allow remote attackers to cause a denial of service (crash) via vectors related to the "addition of CHUNK_HEADER_SIZE to the length," which triggers a heap-based buffer overflow. Varias vulnerabilidades de desbordamiento de enteros en la función _objalloc_alloc (1) en objalloc.c y (2) macro objalloc_alloc en include/objalloc.h en GNU libi... • http://gcc.gnu.org/bugzilla/show_bug.cgi?id=54411 • CWE-189: Numeric Errors •