Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
rui314 mold Object File input-files.cc initialize_sections heap-based overflow
Vulnerability Description
A vulnerability was detected in rui314 mold up to 2.40.4. This issue affects the function mold::ObjectFilemold::X86_64::initialize_sections of the file src/input-files.cc of the component Object File Handler. Performing a manipulation results in heap-based buffer overflow. Attacking locally is a requirement. The exploit is now public and may be used. The project was informed of the problem early through an issue report but has not responded yet.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
堆缓冲区溢出
Vulnerability Title
mold 安全漏洞
Vulnerability Description
mold是Rui Ueyama个人开发者的一个高速的现代链接器。 mold 2.40.4及之前版本存在安全漏洞,该漏洞源于组件Object File Handler中文件src/input-files.cc的函数mold::ObjectFilemold::X86_64::initialize_sections存在堆缓冲区溢出。
CVSS Information
N/A
Vulnerability Type
N/A