CVE-2022-48064: Medium severity binutils vulnerability
GNU Binutils before 2.40 was discovered to contain an excessive memory consumption vulnerability via the function bfddwarf2findnearestlinewithalt at dwarf2.c. The attacker could supply a crafted ELF file and cause a DNS attack.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-48064?
CVE-2022-48064 is a vulnerability in GNU Binutils before version 2.40 that allows an attacker to cause excessive memory consumption.
How does CVE-2022-48064 affect GNU Binutils?
CVE-2022-48064 affects GNU Binutils before version 2.40 by allowing an attacker to supply a crafted ELF file and cause a DNS attack.
What is the severity of CVE-2022-48064?
CVE-2022-48064 has a severity rating of medium with a severity value of 5.5.
How can I fix CVE-2022-48064?
To fix CVE-2022-48064, update GNU Binutils to version 2.40 or later.
Where can I find more information about CVE-2022-48064?
You can find more information about CVE-2022-48064 at the following references: [Reference 1](https://sourceware.org/bugzilla/show_bug.cgi?id=29922) and [Reference 2](https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=8f2c64de86bc3d7556121fe296dd679000283931).