First published: Mon Feb 06 2023(Updated: )
An out-of-bounds read flaw was found in the parse_module function in bfd/vms-alpha.c in Binutils.
Credit: secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
GNU Binutils | ||
GNU Binutils | <2.40 |
https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=77c225bdeb410cf60da804879ad41622f5f1aa44
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-25584 is an out-of-bounds read vulnerability found in the parse_module function in bfd/vms-alpha.c in Binutils.
The severity of CVE-2023-25584 is high with a CVSS score of 7.1.
CVE-2023-25584 affects GNU Binutils through the parse_module function in bfd/vms-alpha.c.
To fix CVE-2023-25584, it is recommended to update to the latest version of Binutils.
You can find more information about CVE-2023-25584 at the following references: [https://access.redhat.com/security/cve/CVE-2023-25584](https://access.redhat.com/security/cve/CVE-2023-25584), [https://bugzilla.redhat.com/show_bug.cgi?id=2167467](https://bugzilla.redhat.com/show_bug.cgi?id=2167467), [https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=77c225bdeb410cf60da804879ad41622f5f1aa44](https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=77c225bdeb410cf60da804879ad41622f5f1aa44).