OpenPKG Security Advisory OpenPKG-SA-2006.009 – According to a vendor bug report [0], a buffer overflow in “libbfd” of GNU Binutils [1], as used by GNU strings, allows context-dependent attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a file with a crafted Tektronix Hex Format (TekHex) record in which the length character is not a valid hexadecimal character.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/46774/OpenPKG-SA-2006.009.txt
Source: https://packetstormsecurity.com/files/46774/OpenPKG-Security-Advisory-2006.9.html

