Multiple integer overflows in the (1) objallocalloc function in objalloc.c and (2) objallocalloc macro in include/objalloc.h in GNU libiberty, as used by binutils 2.22, allow remote attackers to cause a denial of service (crash) via vectors related to the "addition of CHUNKHEADER_SIZE to the length," which triggers a heap-based buffer overflow.
{ "availability": "No subscription required", "ubuntu_priority": "low", "binaries": [ { "binary_version": "2.24-5ubuntu3", "binary_name": "binutils" }, { "binary_version": "2.24-5ubuntu3", "binary_name": "binutils-dev" }, { "binary_version": "2.24-5ubuntu3", "binary_name": "binutils-doc" }, { "binary_version": "2.24-5ubuntu3", "binary_name": "binutils-multiarch" }, { "binary_version": "2.24-5ubuntu3", "binary_name": "binutils-multiarch-dev" }, { "binary_version": "2.24-5ubuntu3", "binary_name": "binutils-source" }, { "binary_version": "2.24-5ubuntu3", "binary_name": "binutils-static" }, { "binary_version": "2.24-5ubuntu3", "binary_name": "binutils-static-udeb" } ] }