7.8
CVSSv3

CVE-2017-14333

Published: 12/09/2017 Updated: 09/01/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

The process_version_sections function in readelf.c in GNU Binutils 2.29 allows malicious users to cause a denial of service (Integer Overflow, and hang because of a time-consuming loop) or possibly have unspecified other impact via a crafted binary file with invalid values of ent.vn_next, during "readelf -a" execution.

Vulnerable Product Search on Vulmon Subscribe to Product

gnu binutils 2.29

Vendor Advisories

The process_version_sections function in readelfc in GNU Binutils 229 allows attackers to cause a denial of service (Integer Overflow, and hang because of a time-consuming loop) or possibly have unspecified other impact via a crafted binary file with invalid values of entvn_next, during "readelf -a" execution ...