CVE-2020-16593: Null Pointer Dereference
A Null Pointer Dereference vulnerability exists in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35, in scanunitforsymbols, as demonstrated in addr2line, that can cause a denial of service via a crafted file.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2020-16593?
CVE-2020-16593 has been classified with a moderate severity level due to its potential to cause denial of service.
How do I fix CVE-2020-16593?
To fix CVE-2020-16593, it is recommended to upgrade to a patched version of GNU Binutils that addresses the vulnerability.
What does the vulnerability CVE-2020-16593 affect?
CVE-2020-16593 affects the Binary File Descriptor library (libbfd) in GNU Binutils version 2.35.
What could be the consequences of CVE-2020-16593?
Exploitation of CVE-2020-16593 could lead to a denial of service condition when processing a crafted input file.
Which products are impacted by CVE-2020-16593?
Products such as GNU Binutils 2.35 and various NetApp solutions including Cloud Backup and ONTAP Select are impacted by CVE-2020-16593.