Do your applications use this vulnerable package?
Test your applications
Overview
The demangler in GNU Libiberty allows remote attackers to cause a denial of service (infinite loop, stack overflow, and crash) via a cycle in the references of remembered mangled types.
References
CVSS Score
7.5
high severity
-
Attack VectorNetwork
-
Attack ComplexityLow
-
Privileges RequiredNone
-
User InteractionNone
-
ScopeUnchanged
-
ConfidentialityNone
-
IntegrityNone
-
AvailabilityHigh
- CVE
- CVE-2016-6131
- CWE
- CWE-20
- Snyk ID
- SNYK-DEBIAN8-BINUTILS-404169
- Disclosed
- 07 Feb, 2017
- Published
- 07 Feb, 2017