CVE Vulnerabilities

CVE-2005-1704

Published: May 24, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Integer overflow in the Binary File Descriptor (BFD) library for gdb before 6.3, binutils, elfutils, and possibly other packages, allows user-assisted attackers to execute arbitrary code via a crafted object file that specifies a large number of section headers, leading to a heap-based buffer overflow.

Affected Software

NameVendorStart VersionEnd Version
GdbGnu*6.3 (including)
Red Hat Desktop version 3RedHat*
Red Hat Enterprise Linux 3RedHatbinutils-0:2.14.90.0.4-39*
Red Hat Enterprise Linux 3RedHatelfutils-0:0.94.1-2*
Red Hat Enterprise Linux 4RedHatbinutils-0:2.15.92.0.2-15*
Red Hat Enterprise Linux 4RedHatgdb-0:6.3.0.0-1.63*
Red Hat Enterprise Linux 4RedHatelfutils-0:0.97.1-3*
Red Hat Enterprise Linux AS (Advanced Server) version 2.1RedHat*
Red Hat Enterprise Linux AS (Advanced Server) version 2.1RedHat*
Red Hat Enterprise Linux AS version 3RedHat*
Red Hat Enterprise Linux ES version 2.1RedHat*
Red Hat Enterprise Linux ES version 2.1RedHat*
Red Hat Enterprise Linux ES version 3RedHat*
Red Hat Enterprise Linux WS version 2.1RedHat*
Red Hat Enterprise Linux WS version 2.1RedHat*
Red Hat Enterprise Linux WS version 3RedHat*
Red Hat Linux Advanced Workstation 2.1RedHat*
Red Hat Linux Advanced Workstation 2.1RedHat*
GdbUbuntudapper*
GdbUbuntudevel*
GdbUbuntuedgy*
GdbUbuntufeisty*
Gdb-docUbuntudevel*
Gdb-docUbuntuedgy*
Gdb-docUbuntufeisty*

References