Описание
A flaw exists in binutils in bfd/pef.c. An attacker who is able to submit a crafted PEF file to be parsed by objdump could cause a heap buffer overflow -> out-of-bounds read that could lead to an impact to application availability. This flaw affects binutils versions prior to 2.34.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | not-affected | code not compiled |
| devel | not-affected | 2.35.50.20201210-0ubuntu2 |
| esm-infra-legacy/trusty | not-affected | code not compiled |
| esm-infra/bionic | not-affected | code not compiled |
| esm-infra/focal | not-affected | 2.34-6ubuntu1 |
| esm-infra/xenial | not-affected | code not compiled |
| focal | not-affected | 2.34-6ubuntu1 |
| groovy | not-affected | 2.35.1-1ubuntu1 |
| hirsute | not-affected | 2.35.50.20201210-0ubuntu2 |
| impish | not-affected | 2.35.50.20201210-0ubuntu2 |
Показывать по
Ссылки на источники
4.3 Medium
CVSS2
5.5 Medium
CVSS3
Связанные уязвимости
A flaw exists in binutils in bfd/pef.c. An attacker who is able to submit a crafted PEF file to be parsed by objdump could cause a heap buffer overflow -> out-of-bounds read that could lead to an impact to application availability. This flaw affects binutils versions prior to 2.34.
A flaw exists in binutils in bfd/pef.c. An attacker who is able to submit a crafted PEF file to be parsed by objdump could cause a heap buffer overflow -> out-of-bounds read that could lead to an impact to application availability. This flaw affects binutils versions prior to 2.34.
A flaw exists in binutils in bfd/pef.c. An attacker who is able to submit a crafted PEF file to be parsed by objdump could cause a heap buffer overflow -> out-of-bounds read that could lead to an impact to application availability. This flaw affects binutils versions prior to 2.34.
A flaw exists in binutils in bfd/pef.c. An attacker who is able to sub ...
A flaw exists in binutils in bfd/pef.c. An attacker who is able to submit a crafted PEF file to be parsed by objdump could cause a heap buffer overflow -> out-of-bounds read that could lead to an impact to application availability. This flaw affects binutils versions prior to 2.34.
4.3 Medium
CVSS2
5.5 Medium
CVSS3