A flaw exists in binutils in bfd/pef.c. An attacker who is able to submit a crafted PEF file to be parsed by objdump could cause a heap buffer overflow -> out-of-bounds read that could lead to an impact to application availability. This flaw affects binutils versions before 2.34.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
gnu binutils |
||
fedoraproject fedora 32 |
||
netapp cloud backup - |
||
netapp ontap select deploy administration utility - |
||
netapp solidfire \\& hci management node - |
||
netapp solidfire\\, enterprise sds \\& hci storage node - |
||
broadcom brocade fabric operating system firmware - |
||
netapp hci_compute_node_firmware - |