Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2023-6236

Опубликовано: 01 нояб. 2023
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2023-6236: binutils security update (MODERATE)

[2.30-119.0.2.2]

  • Fix for CVE-2022-4285.
  • Fix illegal memory address when parsing an ELF file contaiing corrupt symbol version information. Upstream commit 5c831a3c7f3ca98d6aba1200353311e1a1f84c70.
  • Partial backport of _bfd_mul_overflow support from upstream commit 1f4361a77b18c5ab32baf2f30fefe5e301e017be
  • Reviewed-by: David Faust david.faust@oracle.com

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

binutils

2.30-119.0.2.el8_8.2

binutils-devel

2.30-119.0.2.el8_8.2

Oracle Linux x86_64

binutils

2.30-119.0.2.el8_8.2

binutils-devel

2.30-119.0.2.el8_8.2

Связанные CVE

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 2 лет назад

An illegal memory access flaw was found in the binutils package. Parsing an ELF file containing corrupt symbol version information may result in a denial of service. This issue is the result of an incomplete fix for CVE-2020-16599.

CVSS3: 5.5
redhat
больше 2 лет назад

An illegal memory access flaw was found in the binutils package. Parsing an ELF file containing corrupt symbol version information may result in a denial of service. This issue is the result of an incomplete fix for CVE-2020-16599.

CVSS3: 5.5
nvd
больше 2 лет назад

An illegal memory access flaw was found in the binutils package. Parsing an ELF file containing corrupt symbol version information may result in a denial of service. This issue is the result of an incomplete fix for CVE-2020-16599.

CVSS3: 5.5
debian
больше 2 лет назад

An illegal memory access flaw was found in the binutils package. Parsi ...

CVSS3: 5.3
redos
больше 2 лет назад

Уязвимость binutils