Multiple integer overflows in the (1) objallocalloc function in objalloc.c and (2) objallocalloc macro in include/objalloc.h in GNU libiberty, as used by binutils 2.22, allow remote attackers to cause a denial of service (crash) via vectors related to the "addition of CHUNKHEADER_SIZE to the length," which triggers a heap-based buffer overflow.
{ "binaries": [ { "binary_name": "binutils", "binary_version": "2.24-5ubuntu3" }, { "binary_name": "binutils-dev", "binary_version": "2.24-5ubuntu3" }, { "binary_name": "binutils-doc", "binary_version": "2.24-5ubuntu3" }, { "binary_name": "binutils-multiarch", "binary_version": "2.24-5ubuntu3" }, { "binary_name": "binutils-multiarch-dev", "binary_version": "2.24-5ubuntu3" }, { "binary_name": "binutils-source", "binary_version": "2.24-5ubuntu3" }, { "binary_name": "binutils-static", "binary_version": "2.24-5ubuntu3" }, { "binary_name": "binutils-static-udeb", "binary_version": "2.24-5ubuntu3" } ], "availability": "No subscription required" }