VYPR
High severity7.8OSV Advisory· Published Feb 24, 2019· Updated Jun 17, 2026

CVE-2019-9070

CVE-2019-9070

Description

An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. It is a heap-based buffer over-read in d_expression_1 in cp-demangle.c after many recursive calls.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

7
  • GNU/BinutilsOSV3 versions
    binutils-2_32, gdb-4_18-branchpoint, gdb-7.10-branchpoint, …+ 2 more
    • (no CPE)range: binutils-2_32, gdb-4_18-branchpoint, gdb-7.10-branchpoint, …
    • (no CPE)range: <=2.32
    • cpe:2.3:a:gnu:binutils:2.32:*:*:*:*:*:*:*
  • GNU/Libibertyllm-fuzzy
    Range: <=2.32
  • cpe:2.3:a:netapp:element_software_management:*:*:*:*:*:*:*:*
  • cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:*+ 1 more
    • cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*

Patches

Vulnerability mechanics

References

8

News mentions

0

No linked articles in our index yet.