Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2005-1704

14
FAUCET Score

CVE-2005-1704 describes an integer overflow vulnerability in the Binary File Descriptor (BFD) library, impacting gdb (before version 6.3), binutils, and elfutils. This flaw allows user-assisted attackers to execute arbitrary code through a crafted object file that triggers a heap-based buffer overflow. With a CVSS score of 4.6 (AV:L/AC:L/Au:N/C:P/I:P/A:P), it requires local access and user interaction, potentially leading to partial confidentiality, integrity, and availability compromise. There is no evidence of active exploitation, public exploit code, or significant community discussion, and it is not listed in CISA's KEV catalog.

Impacted Technologies

VendorProductVersion(s)CPE
<= 6.3CPE matchmatch criteria
cpe:2.3:a:gnu:gdb:*:r2:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 2.0

4.6MEDIUM

AV:L/AC:L/Au:N/C:P/I:P/A:P

Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
Access Vector
LOCAL
Access Complexity
LOW
Authentication
NONE
Exploitability Score
3.9
Impact Score
6.4
CvssVersion
2.0

Exploit Intelligence

EPSS Score
0.60%
Probability of exploitation in next 30 days
EPSS Percentile
45.1%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0060 is in the 81st percentile among its peer group of 3,049 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (14)

redhatpatch availablevia redhat_api
Product: Red Hat Linux Advanced Workstation 2.1
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Desktop version 3
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 3Fixed in: binutils-0:2.14.90.0.4-39
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 3Fixed in: elfutils-0:0.94.1-2
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 4Fixed in: binutils-0:2.15.92.0.2-15
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 4Fixed in: gdb-0:6.3.0.0-1.63
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 4Fixed in: elfutils-0:0.97.1-3
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux AS (Advanced Server) version 2.1
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux AS version 3
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux ES version 2.1
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux ES version 3
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux WS version 2.1
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux WS version 3
View patch
gentoovendor investigatingvia nvd_reference
View patch

Vendor Advisories (1)

redhatCVE-2005-1704Low

security flaw

May 25, 2005

References

patches.sgi.com / support/free/security/advisories/20060703-01-U.asc
bugs.gentoo.org / show_bug.cgi
distro.conectiva.com.br / atualizacoes
secunia.com / advisories/15527
Vendor Advisory
secunia.com / advisories/17001
Vendor Advisory
secunia.com / advisories/17072
Vendor Advisory
secunia.com / advisories/17135
Vendor Advisory
secunia.com / advisories/17257
Vendor Advisory
secunia.com / advisories/17356
Vendor Advisory
secunia.com / advisories/17718
Vendor Advisory
secunia.com / advisories/18506
secunia.com / advisories/21122
Vendor Advisory
secunia.com / advisories/21262
Vendor Advisory
secunia.com / advisories/21717
Vendor Advisory
secunia.com / advisories/24788
Vendor Advisory
security.gentoo.org / glsa/glsa-200505-15.xml
Vendor Advisory
securitytracker.com / id
oval.cisecurity.org / repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9071
support.avaya.com / elmodocs2/security/ASA-2005-222.pdf
support.avaya.com / elmodocs2/security/ASA-2006-015.htm
support.avaya.com / elmodocs2/security/ASA-2006-178.htm
usn.ubuntu.com / 136-1
gentoo.org / security/en/glsa/glsa-200506-01.xml
mandriva.com / security/advisories
mandriva.com / security/advisories
osvdb.org / 16757
redhat.com / support/errata/RHSA-2005-659.html
Vendor Advisory
redhat.com / support/errata/RHSA-2005-673.html
Vendor Advisory
redhat.com / support/errata/RHSA-2005-709.html
Vendor Advisory
redhat.com / support/errata/RHSA-2005-763.html
Vendor Advisory
redhat.com / support/errata/RHSA-2005-801.html
Vendor Advisory
redhat.com / support/errata/RHSA-2006-0354.html
redhat.com / support/errata/RHSA-2006-0368.html
securityfocus.com / archive/1/464745/100/0/threaded
securityfocus.com / bid/13697
trustix.org / errata/2005/0025
vmware.com / support/vi3/doc/esx-55052-patch.html
vupen.com / english/advisories/2007/1267
Vendor Advisory