CVE-2017-14130: Medium severity binutils vulnerability
Last updated 24 July 2024
Other sources
The bfdelfparseattributes function in elf-attrs.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (bfdelfattrstrdup heap-based buffer over-read and application crash) via a crafted ELF file.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2017-14130?
CVE-2017-14130 is a vulnerability in the Binary File Descriptor (BFD) library, which allows remote attackers to cause a denial of service by exploiting a heap-based buffer over-read and crashing the application.
How does CVE-2017-14130 affect software versions?
CVE-2017-14130 affects GNU Binutils version 2.29, and possibly other versions listed in the affected software section.
What is the severity of CVE-2017-14130?
The severity of CVE-2017-14130 is not mentioned in the provided information.
How can I fix the vulnerability CVE-2017-14130?
To fix CVE-2017-14130, it is recommended to update the affected software to version 2.29.1 or later, as mentioned in the affected software section.
Where can I find more information about CVE-2017-14130?
You can find more information about CVE-2017-14130 in the provided references: [sourceware.org/bugzilla/show_bug.cgi?id=22058](sourceware.org/bugzilla/show_bug.cgi?id=22058) and [securityfocus.com/bid/100625](securityfocus.com/bid/100625).