[Bug binutils/24922] New: An out-of-bounds read in pex64_xdata_print_uwd_codes

2019-08-20 Thread mgcho.minic at gmail dot com
Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 11956 --> https://sourceware.org/bugzilla/attachment.cgi?id=11956&action=edit Poc to trigger bug Triggered by "

[Bug binutils/24921] New: A floating point exception in process_cu_tu_index

2019-08-20 Thread mgcho.minic at gmail dot com
Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 11955 --> https://sourceware.org/bugzilla/attachment.cgi?id=11955&action=edit Poc to trigger bug Triggered by "

[Bug binutils/24898] An out-of-bounds read occured in display_data

2019-08-20 Thread mgcho.minic at gmail dot com
https://sourceware.org/bugzilla/show_bug.cgi?id=24898 --- Comment #5 from Mingi Cho --- Hi, I have tested this bug using the binary compiled with "-O3" and ASAN options as following. CC=clang-5.0 CFLAGS="-m32 -Wextra -Wno-missing-field-initializers -fsanitize=address -fno-omit-frame-pointer -g

[Bug binutils/24898] New: An out-of-bounds read occured in display_data

2019-08-12 Thread mgcho.minic at gmail dot com
Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 11946 --> https://sourceware.org/bugzilla/attachment.cgi?id=11946&action=edit Poc to trigger bug Triggered by "./obj

[Bug binutils/24273] An out-of-bounds read in bfd_hash_hash()

2019-02-27 Thread mgcho.minic at gmail dot com
https://sourceware.org/bugzilla/show_bug.cgi?id=24273 --- Comment #2 from Mingi Cho --- Hi Nick, I used the latest binutils sources, and compiled with following configuration: CC=clang-5.0 CXX=clang++-5.0 CFLAGS="-m32 -g -O0 -fsanitize=address -fsanitize-recover=address" CXXFLAGS="-m32 -g -O0 -

[Bug binutils/24273] New: An out-of-bounds read in bfd_hash_hash()

2019-02-26 Thread mgcho.minic at gmail dot com
Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 11652 --> https://sourceware.org/bugzilla/attachment.cgi?id=11652&action=edit Poc to trigger bug Triggered by "./obj

[Bug binutils/24272] New: An out-of-bounds read occured in pex64_xdata_print_uwd_codes()

2019-02-26 Thread mgcho.minic at gmail dot com
: normal Priority: P2 Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 11651 --> https://sourceware.org/bugzilla/attachment.cgi?id=11651&action=edit Poc to

[Bug binutils/24266] New: Heap out-of-bound read in pex64_bfd_print_pdata_section

2019-02-25 Thread mgcho.minic at gmail dot com
Priority: P2 Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 11644 --> https://sourceware.org/bugzilla/attachment.cgi?id=11644&action=edit Poc to trigger bug Tr

[Bug binutils/23316] New: Segmentation fault in get_build_id()

2018-06-20 Thread mgcho.minic at gmail dot com
: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 11089 --> https://sourceware.org/bugzilla/attachment.cgi?id=11089&action=edit POC to trigger bug Triggered by "./nm -l $POC"

[Bug binutils/22809] Segmentation fault in bfd_section_from_shdr

2018-05-07 Thread mgcho.minic at gmail dot com
https://sourceware.org/bugzilla/show_bug.cgi?id=22809 --- Comment #4 from Mingi Cho --- Hi Nick, I have tested the bug in x86 Ubuntu system. When hdr->sh_size is 0x then malloc(hdr->sh_size +1) returns a valid pointer with small size at _bfd_elf_parse_attributes function and the bug is

[Bug binutils/23148] New: Heap buffer overflow in pe_print_edata

2018-05-07 Thread mgcho.minic at gmail dot com
Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 10999 --> https://sourceware.org/bugzilla/attachment.cgi?id=10999&action=edit POC to trigger bug Triggered by "./objdum

[Bug binutils/23147] New: Heap buffer overflow in pe_print_idata

2018-05-07 Thread mgcho.minic at gmail dot com
Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 10998 --> https://sourceware.org/bugzilla/attachment.cgi?id=10998&action=edit POC to trigger bug Triggered by "./objdum

[Bug binutils/22809] Segmentation fault in bfd_section_from_shdr

2018-02-07 Thread mgcho.minic at gmail dot com
https://sourceware.org/bugzilla/show_bug.cgi?id=22809 --- Comment #1 from Mingi Cho --- Created attachment 10794 --> https://sourceware.org/bugzilla/attachment.cgi?id=10794&action=edit PE file to trigger the bug -- You are receiving this mail because: You are on the CC list for the bug. _

[Bug binutils/22809] New: Segmentation fault in bfd_section_from_shdr

2018-02-07 Thread mgcho.minic at gmail dot com
Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 10793 --> https://sourceware.org/bugzilla/attachment.cgi?id=10793&action=edit ELF file to trigger the bug Triggered by "

[Bug binutils/22510] New: Segmentation fault on load_debug_section

2017-11-28 Thread mgcho.minic at gmail dot com
Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 10646 --> https://sourceware.org/bugzilla/attachment.cgi?id=10646&action=edit poc of the crash Triggered by "./readelf -w

[Bug binutils/22509] New: Null pointer dereference on coff_slurp_reloc_table

2017-11-27 Thread mgcho.minic at gmail dot com
Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 10645 --> https://sourceware.org/bugzilla/attachment.cgi?id=10645&action=edit poc of the crash Triggered by "

[Bug binutils/22508] New: Heap overflow in dump_relocs_in_section

2017-11-27 Thread mgcho.minic at gmail dot com
Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 10644 --> https://sourceware.org/bugzilla/attachment.cgi?id=10644&action=edit poc of the crash Triggered by "./objdump -x

[Bug binutils/22507] New: Heap buffer overflow on _bfd_coff_read_string_table

2017-11-27 Thread mgcho.minic at gmail dot com
Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 10643 --> https://sourceware.org/bugzilla/attachment.cgi?id=10643&action=edit poc of the crash Triggered by "

[Bug binutils/22506] New: Segmentation fault in coff_i386_reloc

2017-11-27 Thread mgcho.minic at gmail dot com
Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 10642 --> https://sourceware.org/bugzilla/attachment.cgi?id=10642&action=edit poc of the crash Triggered by "./objdump -W $PO

[Bug binutils/22443] Global buffer overflow in _bfd_elf_get_symbol_version_string

2017-11-17 Thread mgcho.minic at gmail dot com
https://sourceware.org/bugzilla/show_bug.cgi?id=22443 --- Comment #9 from Mingi Cho --- Created attachment 10619 --> https://sourceware.org/bugzilla/attachment.cgi?id=10619&action=edit Proposed patch Hi Nick, I have tested with your patch and added checking for null pointers because the symbo

[Bug binutils/22443] Global buffer overflow in _bfd_elf_get_symbol_version_string

2017-11-17 Thread mgcho.minic at gmail dot com
https://sourceware.org/bugzilla/show_bug.cgi?id=22443 --- Comment #6 from Mingi Cho --- Created attachment 10616 --> https://sourceware.org/bugzilla/attachment.cgi?id=10616&action=edit Proposed patch Hi Nick, I tested with the patch which you suggested. But in my case the problem still occurs

[Bug binutils/22443] Global buffer overflow in _bfd_elf_get_symbol_version_string

2017-11-17 Thread mgcho.minic at gmail dot com
https://sourceware.org/bugzilla/show_bug.cgi?id=22443 --- Comment #5 from Mingi Cho --- Created attachment 10615 --> https://sourceware.org/bugzilla/attachment.cgi?id=10615&action=edit minimized testcase -- You are receiving this mail because: You are on the CC list for the bug. _

[Bug binutils/22443] New: Global buffer overflow in _bfd_elf_get_symbol_version_string

2017-11-15 Thread mgcho.minic at gmail dot com
: normal Priority: P2 Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 10591 --> https://sourceware.org/bugzilla/attachment.cgi?id=10591&action=edit p

[Bug binutils/22386] New: Integer overflow in print_debug_frame ()

2017-11-02 Thread mgcho.minic at gmail dot com
Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 10569 --> https://sourceware.org/bugzilla/attachment.cgi?id=10569&action=edit POC file Triggered by "./readelf -w $PO

[Bug binutils/22385] New: Integer overflow in coff_get_normalized_symtab

2017-11-01 Thread mgcho.minic at gmail dot com
Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 10568 --> https://sourceware.org/bugzilla/attachment.cgi?id=10568&action=edit poc of the crash Triggered by "./obj

[Bug binutils/22384] New: heap buffer overflow in print_gnu_property_note

2017-11-01 Thread mgcho.minic at gmail dot com
Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 10566 --> https://sourceware.org/bugzilla/attachment.cgi?id=10566&action=edit poc of the crash Triggered by "./rea

[Bug binutils/22376] New: Heap overflow in coff_slurp_line_table

2017-10-31 Thread mgcho.minic at gmail dot com
Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 10562 --> https://sourceware.org/bugzilla/attachment.cgi?id=10562&action=edit poc of the crash Triggered by "./objdump -x $PO

[Bug binutils/22373] New: Integer overflow in pe_bfd_read_buildid()

2017-10-30 Thread mgcho.minic at gmail dot com
Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 10560 --> https://sourceware.org/bugzilla/attachment.cgi?id=10560&action=edit POC of the crash Triggered by "./objdump -x

[Bug binutils/22307] New: Heap out of bounds read in _bfd_elf_parse_gnu_properties()

2017-10-16 Thread mgcho.minic at gmail dot com
: normal Priority: P2 Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 10535 --> https://sourceware.org/bugzilla/attachment.cgi?id=10535&action=edit POC to trigg

[Bug binutils/22306] New: Invalid free() in slurp_symtab() [Heap corruption]

2017-10-16 Thread mgcho.minic at gmail dot com
Component: binutils Assignee: unassigned at sourceware dot org Reporter: mgcho.minic at gmail dot com Target Milestone: --- Created attachment 10533 --> https://sourceware.org/bugzilla/attachment.cgi?id=10533&action=edit poc for heap corruption Triggered by &qu