GNU objdump 2.15 [FreeBSD] 2004-05-23 shows: ... "BFD: Please report this bug." While analyzing crafted ELF.

[email protected] 23 Feb 2008 06:15:28 -0000
Newsgroups gmane.comp.security.vulnerabilities
Message-ID <[email protected]>
NU objdump 2.15 [FreeBSD] 2004-05-23 shows:=0D
BFD: BFD 2.15 [FreeBSD] 2004-05-23 internal error, aborting at=0D
/usr/src/gnu/usr.bin/binutils/libbfd/../../../../contrib/binutils/bfd/=0D
elfcode.h line 188 in bfd_elf32_swap_symbol_in=0D
=0D
BFD: Please report this bug.=0D
=0D
While analyzing crafted ELF.=0D
=0D
Note: this bug (in my opinion) is irrelevant, the exception is captured=0D
by the library exception handler. I am reporting it because of the=0D
message:=0D
BFD: Please report this bug.=0D
=0D
Affected Version:=0D
GNU objdump 2.15 [FreeBSD] 2004-05-23 [TESTED & FOUND]=0D
=0D
Affected OS:=0D
FreeBSD 6.3 [TESTED & FOUND]=0D
FreeBSD 6.2 [TESTED & FOUND]=0D
=0D
Discovered By : INTECO-CERT, David Reguera Garcia, [email protected]=
s=0D
POC exploit by : INTECO-CERT, David Reguera Garcia, david.reguera@inteco.=
es=0D
=0D
Remote : NO=0D
Execution of code : NO=0D
Privilege scalation : NO=0D
=0D
The POC "exploit?" is avaible: http://fr33project.org/vulnsexpl/Exploits/=
Objdump_bin_120946/exploit.c=0D
=0D
Report: http://www.freebsd.org/cgi/query-pr.cgi?pr=3Dbin/120946