CVE-2021-46174: Buffer Overflow
Heap-based Buffer Overflow in function bfdgetl32 in Binutils objdump 3.37.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2021-46174?
CVE-2021-46174 is a heap-based buffer overflow vulnerability in the bfd_getl32 function in Binutils objdump 3.37.
What is the severity of CVE-2021-46174?
CVE-2021-46174 has a severity value of 7.5 (High).
Which software is affected by CVE-2021-46174?
The affected software include GNU Binutils, Ubuntu binutils (versions 2.30-21ubuntu1~18.04.9+ and 2.24-5ubuntu14.2+), and Debian binutils (versions up to and including 2.31.1-16 and 2.35.2-2).
How can I fix CVE-2021-46174?
To fix CVE-2021-46174, it is recommended to update to a version of Binutils that is not affected by the vulnerability.
Where can I find more information about CVE-2021-46174?
You can find more information about CVE-2021-46174 in the following references: [1](https://sourceware.org/bugzilla/show_bug.cgi?id=28753) [2](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-46174) [3](https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=cad4d6b91e97b6962807d33c04ed7e7797788438)