First published: Wed Mar 22 2023(Updated: )
Heap based buffer overflow in binutils-gdb/bfd/libbfd.c in bfd_getl64.
Credit: secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
GNU Binutils | =2.39 | |
redhat/binutils | <2.40 | 2.40 |
https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=11d171f1910b508a81d21faa087ad1af573407d8
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-1579 is a heap-based buffer overflow vulnerability in binutils-gdb/bfd/libbfd.c in bfd_getl64.
The severity of CVE-2023-1579 is high, with a CVSS score of 7.8.
CVE-2023-1579 affects software versions 2.39 of GNU Binutils with a heap-based buffer overflow vulnerability in bfd_getl64 function.
Yes, users are advised to update to a patched version of binutils-gdb to fix the CVE-2023-1579 vulnerability.
You can find more information about CVE-2023-1579 at the following references: [Reference 1](https://security.netapp.com/advisory/ntap-20230511-0009/), [Reference 2](https://sourceware.org/bugzilla/show_bug.cgi?id=29988), [Reference 3](https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=11d171f1910b508a81d21faa087ad1af573407d8).