Buffer overflow in getsym in tekhex.c in libbfd in Free Software Foundation GNU Binutils before 20060423, as used by GNU strings, allows context-dependent attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a file with a crafted Tektronix Hex Format (TekHex) record in which the length character is not a valid hexadecimal character.
References
Configurations
History
16 Jan 2025, 20:15
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 7.5
v3 : 7.3 |
Information
Published : 2006-05-15 16:06
Updated : 2025-04-03 01:03
NVD link : CVE-2006-2362
Mitre link : CVE-2006-2362
CVE.ORG link : CVE-2006-2362
JSON object : View
Products Affected
gnu
- binutils
CWE
CWE-787
Out-of-bounds Write