First published: Mon May 03 2021(Updated: )
A flaw was discovered in GNU libiberty within demangle_path() in rust-demangle.c, as distributed in GNU Binutils version 2.36. A crafted symbol can cause stack memory to be exhausted leading to a crash.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
GNU Binutils | =2.36 | |
NetApp ONTAP Select Deploy administration utility |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-3530 is a vulnerability found in GNU libiberty within demangle_path() in rust-demangle.c, as distributed in GNU Binutils version 2.36.
The severity of CVE-2021-3530 is high with a CVSS score of 7.5.
CVE-2021-3530 affects GNU Binutils version 2.36.
CVE-2021-3530 does not affect NetApp ONTAP Select Deploy administration utility.
To fix CVE-2021-3530, users should update to a version of GNU Binutils where the vulnerability is patched.