[Bug 849693] CVE-2012-3509 libiberty: integer overflow, leading to heap-buffer overflow by processing certain file headers via bfd binary

bugzilla at redhat.com bugzilla at redhat.com
Tue Oct 16 17:54:01 UTC 2012


https://bugzilla.redhat.com/show_bug.cgi?id=849693

--- Comment #23 from Jeff Law <law at redhat.com> ---
You're not going to get as far as you might think.  gcc, binutils and gdb rely
heavily on libiberty and often rely on the newest bits in those libraries. 
What I'm saying is that those tools are in effect bound to the libiberty
sources that are included in their releases.

Before going down that path I strongly suggest you discuss it with the
appropriate package maintainers.

-- 
You are receiving this mail because:
You are on the CC list for the bug.


More information about the mingw mailing list