CVE-2021-45078

Related Vulnerabilities: CVE-2021-45078  

stab_xcoff_builtin_type in stabs.c in GNU Binutils through 2.37 allows attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact, as demonstrated by an out-of-bounds write. NOTE: this issue exists because of an incorrect fix for CVE-2018-12699.

Description

The MITRE CVE dictionary describes this issue as:

stab_xcoff_builtin_type in stabs.c in GNU Binutils through 2.37 allows attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact, as demonstrated by an out-of-bounds write. NOTE: this issue exists because of an incorrect fix for CVE-2018-12699.

Additional Information

  • Bugzilla 2033715: CVE-2021-45078 binutils: out-of-bounds write in stab_xcoff_builtin_type() in stabs.c
  • CWE-119->CWE-787: Improper Restriction of Operations within the Bounds of a Memory Buffer leads to Out-of-bounds Write
  • FAQ: Frequently asked questions about CVE-2021-45078