CVE-2005-1704

Severity CVSS v4.0:
Pending analysis
Type:
CWE-189 Numeric Errors
Publication date:
24/05/2005
Last modified:
03/04/2025

Description

Integer overflow in the Binary File Descriptor (BFD) library for gdb before 6.3, binutils, elfutils, and possibly other packages, allows user-assisted attackers to execute arbitrary code via a crafted object file that specifies a large number of section headers, leading to a heap-based buffer overflow.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gnu:gdb:*:r2:*:*:*:*:*:* 6.3 (including)


References to Advisories, Solutions, and Tools