CVE-2020-21490: Medium severity binutils vulnerability
Published Aug 22, 2023
·Updated
An issue was discovered in GNU Binutils 2.34. It is a memory leak when process microblaze-dis.c. This one will consume memory on each insn disassembled.
Affected Software
2 affected componentsFixes available
GNU binutils<2.34
debian/binutils
2.35.2-22.40-22.44-3
Remediation
Event History
Aug 22, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:16 PM
DescriptionSeverityWeaknessAffected Software
Jan 11, 2024
Data Sourced
via Launchpad·11:44 PM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·02:11 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is CVE-2020-21490?
CVE-2020-21490 is a vulnerability in GNU Binutils 2.34 that causes a memory leak when processing microblaze-dis.c.
2
What is the severity of CVE-2020-21490?
The severity of CVE-2020-21490 is medium (CVSS score: 5.5).
3
How does CVE-2020-21490 affect GNU Binutils?
CVE-2020-21490 affects GNU Binutils version 2.34 and can cause memory consumption on each instruction disassembled.
4
Is there a fix available for CVE-2020-21490?
Yes, the fix for CVE-2020-21490 is to upgrade GNU Binutils to version 2.35.2 or higher.
5
Where can I find more information about CVE-2020-21490?
More information about CVE-2020-21490 can be found at the following references: [1] [2] [3].