CVE-2017-7210: Buffer Overflow
Last updated 24 July 2024
Other sources
objdump in GNU Binutils 2.28 is vulnerable to multiple heap-based buffer over-reads (of size 1 and size 8) while handling corrupt STABS enum type strings in a crafted object file, leading to program crash.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/binutilsto a version that resolves this vulnerability.Fixed in 2.35.2-2Fixed in 2.40-2Fixed in 2.44-3
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2017-7210.
What software is affected by this vulnerability?
The software affected by this vulnerability is objdump in GNU Binutils 2.28.
What is the description of this vulnerability?
This vulnerability in objdump allows for multiple heap-based buffer over-reads (of size 1 and size 8) while handling corrupt STABS enum type strings in a crafted object file, leading to program crash.
What is the severity of this vulnerability?
The severity of this vulnerability is not mentioned in the provided information.
Are there any known remedies or patches for this vulnerability?
Yes, for Ubuntu, the remedy is to update to version 2.26.1-1ubuntu1~16.04.8+ or higher. For Debian, the remedy is to update to version 2.31.1-16, 2.35.2-2, 2.40-2, or 2.41-5.