First published: Fri Aug 04 2017(Updated: )
Last updated 24 July 2024
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GNU Binutils | <=2.29 | |
debian/binutils | 2.35.2-2 2.40-2 2.43.1-5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this exploit is CVE-2017-12453.
The severity of CVE-2017-12453 is not specified in the provided information.
The affected software is the Binary File Descriptor (BFD) library, specifically GNU Binutils 2.29 and earlier versions.
Remote attackers can exploit CVE-2017-12453 by causing an out of bounds heap read through a crafted vms alpha file.
Yes, there are known fixes for CVE-2017-12453. For example, Ubuntu has released a fixed version 2.29.1 and Debian has released fixed versions 2.31.1-16, 2.35.2-2, 2.40-2, and 2.41-5 of the Binutils package.