REDHAT-BUG-1560827: Low severity GNU binutils vulnerability
binutils through version 2.30 has a vulnerability in the elf.c:bfdsectionfromshdr() functionof the Binary File Descriptor (BFD) library (aka libbfd). An attacker could exploit this with a crafted executable file to cause a crash.
Upstream Bug:
https://sourceware.org/bugzilla/showbug.cgi?id=22809
Upstream Patch:
https://sourceware.org/bugzilla/attachment.cgi?id=10814&action=diff
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1560827?
The severity of REDHAT-BUG-1560827 is considered to be high due to the potential for an attacker to exploit the vulnerability and cause a crash.
How do I fix REDHAT-BUG-1560827?
To fix REDHAT-BUG-1560827, update to a version of GNU binutils that is newer than 2.30.
What versions of GNU binutils are affected by REDHAT-BUG-1560827?
GNU binutils versions up to and including 2.30 are affected by REDHAT-BUG-1560827.
What potential impact does REDHAT-BUG-1560827 have on systems?
The potential impact of REDHAT-BUG-1560827 is that it may allow an attacker to crash the system by exploiting a crafted executable file.
Is there a workaround for REDHAT-BUG-1560827?
No official workaround is provided for REDHAT-BUG-1560827; upgrading to a secure version is the recommended approach.