5.5
CVSSv3

CVE-2022-38533

Published: 26/08/2022 Updated: 07/11/2023
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

In GNU Binutils prior to 2.40, there is a heap-buffer-overflow in the error function bfd_getl32 when called from the strip_main function in strip-new via a crafted file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gnu binutils

fedoraproject fedora 36

fedoraproject fedora 37

Vendor Advisories

In GNU Binutils before 240, there is a heap-buffer-overflow in the error function bfd_getl32 when called from the strip_main function in strip-new via a crafted file ...