CVE-2020-35342: High severity binutils vulnerability
Published Aug 22, 2023
·Updated
GNU Binutils before 2.34 has an uninitialized-heap vulnerability in function tic4xprintcond (file opcodes/tic4x-dis.c) which could allow attackers to make an information leak.
Affected Software
2 affected componentsFixes available
GNU binutils<2.34
debian/binutils
2.35.2-22.40-22.44-3
Remediation
Event History
Aug 22, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Jan 11, 2024
Data Sourced
via Launchpad·11:50 PM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·02:17 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2020-35342.
2
What is the severity of CVE-2020-35342?
The severity of CVE-2020-35342 is high with a severity value of 7.5.
3
How does CVE-2020-35342 affect GNU Binutils?
CVE-2020-35342 affects GNU Binutils before version 2.34.
4
How can attackers exploit CVE-2020-35342?
Attackers can exploit CVE-2020-35342 to make an information leak.
5
Are there any references for CVE-2020-35342?
Yes, here are some references for CVE-2020-35342: - [Bugzilla](https://sourceware.org/bugzilla/show_bug.cgi?id=25319) - [CVE Details](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-35342) - [GitWeb](https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=8c5e259235a4e4546910245b170de1e29a711034)