CVE-2019-9071: Medium severity GNU binutils vulnerability
An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. It is a stack consumption issue in dcounttemplatesscopes in cp-demangle.c after many recursive calls.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/binutilsto a version that resolves this vulnerability.Fixed in 2.35.2-2Fixed in 2.40-2Fixed in 2.44-3Fixed in 2.46.90.20260712-1
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-9071.
What is the affected software?
The affected software includes GNU Binutils versions 2.32 and earlier.
What is the severity of CVE-2019-9071?
The severity of CVE-2019-9071 is not specified in the provided information. Please refer to the official vulnerability report for more details.
How do I fix CVE-2019-9071?
To fix CVE-2019-9071, you should update your GNU Binutils to version 2.33 or later.
Where can I find more information about CVE-2019-9071?
You can find more information about CVE-2019-9071 at the following references: [SecurityFocus](http://www.securityfocus.com/bid/107147), [NetApp](https://security.netapp.com/advisory/ntap-20190314-0003/), and [F5 Networks](https://support.f5.com/csp/article/K02884135).