First published: Mon Jul 02 2018(Updated: )
A flaw was found in The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to cause a denial of service (excessive memory allocation and application crash) via a crafted ELF file. This can occur during execution of nm. References: <a href="https://sourceware.org/bugzilla/show_bug.cgi?id=23361">https://sourceware.org/bugzilla/show_bug.cgi?id=23361</a>
Affected Software | Affected Version | How to fix |
---|---|---|
Ubuntu/binutils |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-1597436 is considered critical due to potential denial of service caused by excessive memory allocation.
To fix REDHAT-BUG-1597436, update the GNU Binutils package to the latest version that addresses this vulnerability.
Users of the GNU Binutils version 2.30 are affected by REDHAT-BUG-1597436, particularly those utilizing the Binary File Descriptor library.
REDHAT-BUG-1597436 allows remote attackers to execute a crafted ELF file that can lead to a denial of service.
REDHAT-BUG-1597436 is found in the GNU Binutils package, specifically in the Binary File Descriptor library.