CVE-2020-19726: High severity binutils vulnerability
An issue was discovered in binutils libbfd.c 2.36 relating to the auxiliary symbol data allows attackers to read or write to system memory or cause a denial of service.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2020-19726?
CVE-2020-19726 is a vulnerability discovered in binutils libbfd.c 2.36 that allows attackers to read or write to system memory or cause a denial of service.
How severe is CVE-2020-19726?
CVE-2020-19726 has a severity score of 8.8 (high).
What software is affected by CVE-2020-19726?
The following software versions are affected by CVE-2020-19726: GNU Binutils 2.36, binutils packages 2.31.1-16 to 2.35.2-2 for Debian, binutils package 2.36 for Ubuntu, binutils package 2.30-21ubuntu1~18.04.9+ for Ubuntu (bionic), binutils package 2.24-5ubuntu14.2+ for Ubuntu (trusty), and binutils package 2.26.1-1ubuntu1~16.04.8+ for Ubuntu (xenial).
How can I fix CVE-2020-19726?
To fix CVE-2020-19726, you should update your affected software to the latest version provided by your vendor.
Where can I find more information about CVE-2020-19726?
You can find more information about CVE-2020-19726 on the following references: [Bugzilla #26240](https://sourceware.org/bugzilla/show_bug.cgi?id=26240) and [Bugzilla #26241](https://sourceware.org/bugzilla/show_bug.cgi?id=26241).