CVE-2017-17126: Buffer Overflow
The loaddebugsection function in readelf.c in GNU Binutils 2.29.1 allows remote attackers to cause a denial of service (invalid memory access and application crash) or possibly have unspecified other impact via an ELF file that lacks section headers.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-17126?
CVE-2017-17126 has been classified as a denial of service vulnerability due to potential application crashes from invalid memory access.
How do I fix CVE-2017-17126?
To fix CVE-2017-17126, upgrade GNU Binutils to version 2.30 or later, where the vulnerability has been addressed.
What types of attacks are possible with CVE-2017-17126?
CVE-2017-17126 allows remote attackers to exploit ELF files to cause application crashes or potentially other unspecified impacts.
Which software versions are affected by CVE-2017-17126?
CVE-2017-17126 specifically affects GNU Binutils version 2.29.1.
Is CVE-2017-17126 exploitable remotely?
Yes, CVE-2017-17126 can be exploited by remote attackers through malformed ELF files.