Integer Overflow Vulnerability in GNU libiberty by GNU
CVE-2012-3509

Currently unrated

Key Information:

Vendor
Gnu
Vendor
CVE Published:
5 September 2012

Summary

The integer overflow vulnerability in the _objalloc_alloc function and the objalloc_alloc macro found in GNU libiberty allows remote attackers to invoke a denial of service through specially crafted input. This flaw occurs during the addition of the CHUNK_HEADER_SIZE to the allocation length, which can lead to a heap-based buffer overflow, resulting in application crashes and potential instability.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.