CVE-2022-45703: Buffer Overflow
Published Aug 22, 2023
·Updated
Heap buffer overflow vulnerability in binutils readelf before 2.40 via function displaydebugsection in file readelf.c.
Affected Software
2 affected componentsFixes available
GNU binutils<2.40
debian/binutils<=2.35.2-2
2.40-22.44-3
Remediation
Event History
Aug 22, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Jan 12, 2024
Data Sourced
via Launchpad·12:12 AM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·03:40 AM
RemedyDescriptionSeverityAffected Software
Feb 27, 2025
Data Sourced
via Debian·04:49 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is CVE-2022-45703?
CVE-2022-45703 is a heap buffer overflow vulnerability in binutils readelf before version 2.40.
2
How does CVE-2022-45703 affect Binutils Readelf?
CVE-2022-45703 affects Binutils Readelf through the display_debug_section function in the readelf.c file.
3
What is the severity of CVE-2022-45703?
The severity of CVE-2022-45703 is high, with a CVSS score of 7.8.
4
Which software versions are affected by CVE-2022-45703?
Binutils Readelf versions before 2.40 are affected by CVE-2022-45703.
5
How can CVE-2022-45703 be fixed?
To fix CVE-2022-45703, upgrade to binutils readelf version 2.40 or later.