Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-20284

Опубликовано: 22 нояб. 2020
Источник: redhat
CVSS3: 4.7
EPSS Низкий

Описание

A flaw was found in GNU Binutils 2.35.1, where there is a heap-based buffer overflow in _bfd_elf_slurp_secondary_reloc_section in elf.c due to the number of symbols not calculated correctly. The highest threat from this vulnerability is to system availability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6binutilsNot affected
Red Hat Enterprise Linux 7binutilsNot affected
Red Hat Enterprise Linux 8gcc-toolset-10-binutilsFix deferred
Red Hat Enterprise Linux 8gcc-toolset-9-binutilsNot affected
Red Hat Enterprise Linux 9binutilsNot affected
Red Hat Enterprise Linux 8binutilsFixedRHSA-2021:436409.11.2021
Red Hat Enterprise Linux 8binutilsFixedRHSA-2021:436409.11.2021

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-119
https://bugzilla.redhat.com/show_bug.cgi?id=1937784binutils: Heap-based buffer overflow in _bfd_elf_slurp_secondary_reloc_section in elf.c

EPSS

Процентиль: 26%
0.00087
Низкий

4.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 4 лет назад

A flaw was found in GNU Binutils 2.35.1, where there is a heap-based buffer overflow in _bfd_elf_slurp_secondary_reloc_section in elf.c due to the number of symbols not calculated correctly. The highest threat from this vulnerability is to system availability.

CVSS3: 5.5
nvd
больше 4 лет назад

A flaw was found in GNU Binutils 2.35.1, where there is a heap-based buffer overflow in _bfd_elf_slurp_secondary_reloc_section in elf.c due to the number of symbols not calculated correctly. The highest threat from this vulnerability is to system availability.

CVSS3: 5.5
debian
больше 4 лет назад

A flaw was found in GNU Binutils 2.35.1, where there is a heap-based b ...

CVSS3: 5.5
github
больше 3 лет назад

A flaw was found in GNU Binutils 2.35.1, where there is a heap-based buffer overflow in _bfd_elf_slurp_secondary_reloc_section in elf.c due to the number of symbols not calculated correctly. The highest threat from this vulnerability is to system availability.

rocky
около 4 лет назад

Moderate: binutils security update

EPSS

Процентиль: 26%
0.00087
Низкий

4.7 Medium

CVSS3