7.5
CVSSv3

CVE-2017-7227

Published: 22/03/2017 Updated: 09/01/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

GNU linker (ld) in GNU Binutils 2.28 is vulnerable to a heap-based buffer overflow while processing a bogus input script, leading to a program crash. This relates to lack of '\0' termination of a name field in ldlex.l.

Vulnerable Product Search on Vulmon Subscribe to Product

gnu binutils 2.28

Vendor Advisories

GNU linker (ld) in GNU Binutils 228 is vulnerable to a heap-based buffer overflow while processing a bogus input script, leading to a program crash This relates to lack of '\0' termination of a name field in ldlexl ...
GNU linker (ld) in GNU Binutils 228 is vulnerable to a heap-based buffer overflow while processing a bogus input script, leading to a program crash This relates to lack of '\0' termination of a name field in ldlexl ...