CVE-2020-16591: Medium severity binutils vulnerability
Published Dec 9, 2020
·Updated
A Denial of Service vulnerability exists in the Binary File Descriptor (BFD) in GNU Binutils 2.35 due to an invalid read in processsymboltable, as demonstrated in readeif.
Affected Software
2 affected components
GNU binutils=2.35
NetApp ONTAP Select Deploy administration utility
Remediation
Patch Available
Event History
Dec 9, 2020
CVE Published
via MITRE·09:05 PM
Data Sourced
via MITRE·09:05 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this Denial of Service vulnerability?
The vulnerability ID is CVE-2020-16591.
2
What is the severity rating of CVE-2020-16591?
The severity rating of CVE-2020-16591 is medium with a score of 5.5.
3
Which software is affected by CVE-2020-16591?
GNU Binutils 2.35 and NetApp ONTAP Select Deploy administration utility are affected by CVE-2020-16591.
4
What is the cause of the vulnerability in GNU Binutils 2.35?
The vulnerability in GNU Binutils 2.35 is caused by an invalid read in process_symbol_table in the Binary File Descriptor (BFD).
5
How can I fix the CVE-2020-16591 vulnerability?
It is recommended to update to the latest version of GNU Binutils or NetApp ONTAP Select Deploy administration utility as provided by the vendors.