Multiple integer overflows in the (1) objallocalloc function in objalloc.c and (2) objallocalloc macro in include/objalloc.h in GNU libiberty, as used by binutils 2.22, allow remote attackers to cause a denial of service (crash) via vectors related to the "addition of CHUNKHEADER_SIZE to the length," which triggers a heap-based buffer overflow.
{
"binaries": [
{
"binary_version": "2.24-5ubuntu3",
"binary_name": "binutils"
},
{
"binary_version": "2.24-5ubuntu3",
"binary_name": "binutils-dev"
},
{
"binary_version": "2.24-5ubuntu3",
"binary_name": "binutils-doc"
},
{
"binary_version": "2.24-5ubuntu3",
"binary_name": "binutils-multiarch"
},
{
"binary_version": "2.24-5ubuntu3",
"binary_name": "binutils-multiarch-dev"
},
{
"binary_version": "2.24-5ubuntu3",
"binary_name": "binutils-source"
},
{
"binary_version": "2.24-5ubuntu3",
"binary_name": "binutils-static"
},
{
"binary_version": "2.24-5ubuntu3",
"binary_name": "binutils-static-udeb"
}
],
"availability": "No subscription required"
}