CVE-2017-13710: Null Pointer Dereference
Last updated 24 July 2024
Other sources
The setupgroup function in elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a group section that is too small.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2017-13710.
What is the severity level of CVE-2017-13710?
The severity level of CVE-2017-13710 is not provided in the information provided.
How does CVE-2017-13710 affect the affected software?
CVE-2017-13710 affects the Binary File Descriptor (BFD) library (aka libbfd) as distributed in GNU Binutils 2.29.
How can a remote attacker exploit CVE-2017-13710?
A remote attacker can exploit CVE-2017-13710 by causing a denial of service (NULL pointer dereference and application crash) via a group section that is too small.
How can CVE-2017-13710 be fixed?
To fix CVE-2017-13710, it is recommended to update the affected software to version 2.29.1 or later.