CVE-2017-12459: High severity binutils vulnerability
Last updated 24 July 2024
Other sources
The bfdmachoreadsymtabstrtab function in bfd/mach-o.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap write and possibly achieve code execution via a crafted mach-o file.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2017-12459?
CVE-2017-12459 is a vulnerability in the Binary File Descriptor (BFD) library that allows remote attackers to cause an out of bounds heap write and possibly achieve code execution via a crafted mach-o file.
How does CVE-2017-12459 affect me?
If you are using GNU Binutils version 2.29 and earlier, you are affected by CVE-2017-12459.
How can I fix CVE-2017-12459?
To fix CVE-2017-12459, update to GNU Binutils version 2.29.1 or later.
Where can I find more information about CVE-2017-12459?
You can find more information about CVE-2017-12459 in the following references: [link to sourceware.org](https://sourceware.org/bugzilla/show_bug.cgi?id=21840), [link to launchpad.net](https://launchpad.net/bugs/cve/CVE-2017-12459), [link to cve.mitre.org](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-12459).