First published: Thu Mar 11 2021(Updated: )
A flaw was found in GNU Binutils 2.35.1. There is a heap-based buffer overflow in _bfd_elf_slurp_secondary_reloc_section in elf.c because the number of symbols is not caculated correctly. Upstream bug: <a href="https://sourceware.org/bugzilla/show_bug.cgi?id=26931">https://sourceware.org/bugzilla/show_bug.cgi?id=26931</a>
Affected Software | Affected Version | How to fix |
---|---|---|
Ubuntu/binutils |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-1937784 is considered high due to the heap-based buffer overflow vulnerability.
To fix REDHAT-BUG-1937784, upgrade to the patched version of GNU Binutils that addresses this heap-based buffer overflow.
REDHAT-BUG-1937784 affects GNU Binutils version 2.35.1 and possibly earlier versions.
REDHAT-BUG-1937784 is classified as a heap-based buffer overflow vulnerability.
The implications of REDHAT-BUG-1937784 may include data corruption, application crashes, or potential remote code execution.