binutils: Recursive Stack Overflow within function d_name, d_encoding, and d_local_name in cp-demangle.c
Published Oct 27, 2018
5.5
MEDIUMCVSS 3.0
EPSS 1.69%
Description
An issue was discovered in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31. There is a stack consumption vulnerability resulting from infinite recursion in the functions d_name(), d_encoding(), and d_local_name() in cp-demangle.c. Remote attackers could leverage this vulnerability to cause a denial-of-service via an ELF file, as demonstrated by nm.
Affected products
No data.
No data.
Red Hat Enterprise Linux 5
binutils
Will not fix
Red Hat Enterprise Linux 5
binutils220
Will not fix
Red Hat Enterprise Linux 6
binutils
Will not fix
Red Hat Enterprise Linux 7
binutils
Will not fix
Red Hat Enterprise Linux 8
binutils
Fix deferred
Red Hat Enterprise Linux 8
mingw-binutils
Will not fix
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 5 | binutils | Will not fix | n/a |
| Red Hat Enterprise Linux 5 | binutils220 | Will not fix | n/a |
| Red Hat Enterprise Linux 6 | binutils | Will not fix | n/a |
| Red Hat Enterprise Linux 7 | binutils | Will not fix | n/a |
| Red Hat Enterprise Linux 8 | binutils | Fix deferred | n/a |
| Red Hat Enterprise Linux 8 | mingw-binutils | Will not fix | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
Red Hat has determined this flaw to be of low impact as successful exploitation results in a crash (denial of service) of the application utilizing the binutils library and does not impact system-wide stability or lead to arbitrary code execution or memory corruption.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
1 other source (Red Hat) ▾
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
AV:N/AC:M/Au:N/C:N/I:N/A:P
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2021–2026- EPSS v1
- EPSS v5
- EPSS v2
- EPSS v3
Percentile over time
- EPSS v1
- EPSS v5
- EPSS v2
- EPSS v3
Table of values (17 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 1.69% (0.01686) | 76.19th | v5 (v2026.06.15) |
| Sep 22, 2026 | 1.69% (0.01686) | 76.02th | v5 (v2026.06.15) |
| Sep 21, 2026 | 2.87% (0.02870) | 86.12th | v5 (v2026.06.15) |
| Sep 6, 2026 | 1.69% (0.01686) | 75.50th | v5 (v2026.06.15) |
| Sep 5, 2026 | 2.87% (0.02870) | 85.82th | v5 (v2026.06.15) |
| Aug 30, 2026 | 1.69% (0.01686) | 75.38th | v5 (v2026.06.15) |
| Aug 28, 2026 | 2.87% (0.02870) | 85.73th | v5 (v2026.06.15) |
| Aug 24, 2026 | 1.69% (0.01686) | 75.24th | v5 (v2026.06.15) |
| Aug 23, 2026 | 2.87% (0.02870) | 85.67th | v5 (v2026.06.15) |
| Jul 20, 2024 | 0.25% (0.00247) | 65.17th | v3 (v2023.03.01) |
| Apr 17, 2024 | 0.25% (0.00247) | 64.37th | v3 (v2023.03.01) |
| Oct 21, 2023 | 0.25% (0.00247) | 62.37th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.21% (0.00208) | 56.90th | v3 (v2023.03.01) |
| Mar 6, 2023 | 1.14% (0.01136) | 59.45th | v2 (v2022.01.01) |
| Feb 4, 2022 | 1.14% (0.01136) | 34.23th | v2 (v2022.01.01) |
| Feb 3, 2022 | 1.05% (0.01046) | 28.66th | v5 (v2026.06.15) |
| Apr 14, 2021 | 1.05% (0.01046) | 0.00th | v1 |
References (7)
- https://access.redhat.com/security/cve/CVE-2018-18700 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1646535 Issue Tracking
- https://gcc.gnu.org/bugzilla/show_bug.cgi?id=87681 x_refsource_MISCExploitIssue TrackingVendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2018-18700
- https://usn.ubuntu.com/4326-1/ vendor-advisoryx_refsource_UBUNTU
- https://usn.ubuntu.com/4336-1/ vendor-advisoryx_refsource_UBUNTU
- https://www.cve.org/CVERecord?id=CVE-2018-18700
| Link | Providers | Tags |
|---|---|---|
| https://access.redhat.com/security/cve/CVE-2018-18700 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=1646535 | Issue Tracking | |
| https://gcc.gnu.org/bugzilla/show_bug.cgi?id=87681 | x_refsource_MISCExploitIssue TrackingVendor Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2018-18700 | ||
| https://usn.ubuntu.com/4326-1/ | vendor-advisoryx_refsource_UBUNTU | |
| https://usn.ubuntu.com/4336-1/ | vendor-advisoryx_refsource_UBUNTU | |
| https://www.cve.org/CVERecord?id=CVE-2018-18700 |
Change history (0)
No recorded changes yet.