[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]
PR/33551 CVS commit: src/gnu/dist/binutils/bfd
The following reply was made to PR bin/33551; it has been noted by GNATS.
From: Adrian Portelli <adrianp%netbsd.org@localhost>
Subject: PR/33551 CVS commit: src/gnu/dist/binutils/bfd
Date: Sun, 22 Jun 2008 14:02:40 +0000 (UTC)
Module Name: src
Committed By: adrianp
Date: Sun Jun 22 14:02:40 UTC 2008
Fix for PR #33551 (a.k.a CVE-2006-2362)
Back port from the binutils CVS tree
Buffer overflow in getsym in tekhex.c in libbfd in Free Software Foundation
GNU Binutils before 20060423, as used by GNU strings, allows context-dependent
attackers to cause a denial of service (application crash) and possibly
execute arbitrary code via a file with a crafted Tektronix Hex Format (TekHex)
record in which the length character is not a valid hexadecimal character.
To generate a diff of this commit:
cvs rdiff -r126.96.36.199 -r1.2 src/gnu/dist/binutils/bfd/tekhex.c
Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.
Main Index |
Thread Index |