mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-28 01:04:30 +00:00
973 B
973 B
CVE-2018-20673
Description
The demangle_template function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31.1, contains an integer overflow vulnerability (for "Create an array for saving the template argument values") that can trigger a heap-based buffer overflow, as demonstrated by nm.
POC
Reference
- https://sourceware.org/bugzilla/show_bug.cgi?id=24039
- https://sourceware.org/bugzilla/show_bug.cgi?id=24039