- 34,644
- 0
- 18 Дек 2022
- EDB-ID
- 42386
- Проверка EDB
-
- Пройдено
- Автор
- MARCEL BöHME
- Тип уязвимости
- DOS
- Платформа
- LINUX
- CVE
- cve-2016-2226
- Дата публикации
- 2017-07-27
GNU libiberty - Buffer Overflow
Код:
Source: https://gcc.gnu.org/bugzilla/show_bug.cgi?id=69687
The attached program binary causes a buffer overflow in cplus-dem.c when it tries to demangle specially crafted function arguments in the binary. Both the buffer size as well as the buffer content are controlled from the binary.
objdump -x -C <file>
nm -C <file>
Tested on the following configurations
* 2.6.32-573.7.1.el6.x86_64 #1 SMP Tue Sep 22 22:00:00 UTC 2015 x86_64 x86_64 x86_64 GNU/Linux
* 4.1.12-boot2docker #1 SMP Tue Nov 3 06:03:36 UTC 2015 x86_64 x86_64 x86_64 GNU/Linux
* Binutils versions: 2.20 and 2.26
Proof of Concept:
https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/42386.zip
- Источник
- www.exploit-db.com