First published: Thu Mar 11 2021(Updated: )
A flaw was found in GNU Binutils 2.35.1, where there is a heap-based buffer overflow in _bfd_elf_slurp_secondary_reloc_section in elf.c due to the number of symbols not calculated correctly. The highest threat from this vulnerability is to system availability.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
GNU Binutils | =2.35.1 | |
Netapp Cloud Backup | ||
NetApp ONTAP Select Deploy administration utility |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-20284 is a vulnerability in GNU Binutils 2.35.1 that allows for a heap-based buffer overflow in _bfd_elf_slurp_secondary_reloc_section in elf.c.
The severity of CVE-2021-20284 is medium with a CVSS score of 5.5.
GNU Binutils 2.35.1, Netapp Cloud Backup, and NetApp ONTAP Select Deploy administration utility are affected by CVE-2021-20284.
To fix the CVE-2021-20284 vulnerability, it is recommended to upgrade to a fixed version of GNU Binutils or apply the necessary patch provided by the vendor.