First published: Sun Feb 24 2019(Updated: )
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an attempted excessive memory allocation in _bfd_elf_slurp_version_tables in elf.c.
Credit: cve@mitre.org cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ubuntu/binutils | =2.32 | |
netapp hci management node | ||
netapp solidfire | ||
Ubuntu Linux | =18.04 | |
debian/binutils | 2.35.2-2 2.40-2 2.44-1 | |
GNU Binutils | =2.32 | |
Ubuntu | =18.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-9073 is a vulnerability in the Binary File Descriptor (BFD) library, as distributed in GNU Binutils 2.32.
The severity of CVE-2019-9073 is not specified in the provided information.
CVE-2019-9073 affects the GNU Binutils software versions 2.26.1-1ubuntu1~16.04.8+ and 2.30-21ubuntu1~18.04.3, as well as version 2.33.
Yes, fixes are available depending on the affected software version. Please refer to the provided references for more information.
You can find more information about CVE-2019-9073 in the provided references: https://security.netapp.com/advisory/ntap-20190314-0003/, https://support.f5.com/csp/article/K37121474, https://sourceware.org/bugzilla/show_bug.cgi?id=24233