First published: Mon May 01 2017(Updated: )
Last updated 24 July 2024
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GNU Binutils | =2.28 | |
debian/binutils | 2.35.2-2 2.40-2 2.43.1-5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-8395 is a vulnerability in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, that allows an invalid write of size 8 due to a missing malloc() return-value check.
The severity of CVE-2017-8395 is not specified in the information provided.
If you are using GNU Binutils 2.28, your system may be vulnerable to an invalid write of size 8 due to this issue in the Binary File Descriptor (BFD) library (aka libbfd).
To fix CVE-2017-8395, you should update GNU Binutils to version 2.28-5 or newer.
You can find more information about CVE-2017-8395 in the references provided: https://sourceware.org/bugzilla/show_bug.cgi?id=21431, https://security.gentoo.org/glsa/201709-02, https://launchpad.net/bugs/cve/CVE-2017-8395