CVE-2018-12698: Canonical Ubuntu Linux

High severity, CVSS 7.5. EPSS: 6.6% chance of exploitation in the next 30 days.

demangle_template in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30, allows attackers to trigger excessive memory consumption (aka OOM) during the "Create an array for saving the template argument values" XNEWVEC call. This can occur during execution of objdump.

Affected products

  • Canonical Ubuntu Linux: version 16.04.4 only
  • GNU Binutils: version 2.30 only

Published 2018-06-23. Last modified 2026-06-17.